Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Windows 8.1 Metro-Apps starten minimiert (https://www.trojaner-board.de/169556-windows-8-1-metro-apps-starten-minimiert.html)

Wandalensalz 10.08.2015 14:56

Windows 8.1 Metro-Apps starten minimiert
 
Hallo nochmal,
ich habe ein Problem und zwar das seit etwa 3 Wochen
meine Metro-Apps nur noch minimiert starten und sich
nicht maximieren lassen.
Ausser der Store und die PC-Einstellungen, die ich
wie auch immer repariert habe.
App-Troubleshooter o.ä habe ich schon verwendet.
Jetzt wollte ich wissen, ob ich vielleicht einen
Virus o.ä. habe. Meine Treiber sind aktuell.

Mein System:
Windows 8.1 64bit

Hardware:
AMD Dualcore Prozessor E1-2500(1.4 GHz)
AMD Radeon HD 8240 mit 512 mb Grafikspeicher
15.6 Zoll HD LED LCD Display
4GB RAM
HDD Festplatte mit 500GB

schrauber 10.08.2015 15:08

hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


Wandalensalz 10.08.2015 16:04

FRST.txt:

FRST Logfile:
Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-08-2015
durchgeführt von hendrik_2002 (Administrator) auf ARBEITSRECHNER (10-08-2015 16:54:04)
Gestartet von C:\Users\hendr_000\Desktop
Geladene Profile: hendrik_2002 (Verfügbare Profile: hendrik_2002 & Dirk & Niklas Steinmetz & Administrator)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
(Apple Inc.) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(IObit) C:\Program Files (x86)\IObit\iFreeUp\iFreeUpMini.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe


==================== Registry (Nicht auf der Ausnahmeliste) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKLM-x32\...\Run: [iFreeUp] => C:\Program Files (x86)\IObit\iFreeUp\iFreeUpMini.exe [470304 2015-03-31] (IObit)
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit)
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Keine Datei

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Richtlinienbeschränkung <======= ACHTUNG
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Richtlinienbeschränkung <======= ACHTUNG
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.msn.com/de-de/?pc=UP97&ocid=UP97DHP
hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPF4C30013-DBA8-4203-9422-5B83732DCF2E&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> {36A2063E-A8A8-41E0-B063-C2945B3B3AA1} URL =
BHO: Kein Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} ->  Keine Datei
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-21] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-21] (Oracle Corporation)
BHO-x32: Advanced SystemCare Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2015-04-01] (IObit)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
Tcpip\..\Interfaces\{0186D2C8-01F4-4F66-A6D2-3A87F13D817A}: [DhcpNameServer] 192.168.1.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735
FF SelectedSearchEngine: Yahoo!
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-20] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-21] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-20] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-01-26] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-532561150-3242956754-1626305917-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-06-20] ()
FF user.js: detected! => C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\user.js [2015-06-30]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\Extensions\iobitascsurfingprotection@iobit.com [2015-06-30]
FF Extension: Kein Name - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-05-27]
FF Extension: Kein Name - C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\extensions\amazon-icon@giga.de [nicht gefunden]
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Firefox Developer Edition\firefox.exe

Chrome:
=======
CHR Profile: C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-06-06]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Adblock Pro) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2015-06-06]
CHR Extension: (uMatrix) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfcmafjalglgifnmanfmnieipoejdcf [2015-04-20]
CHR Extension: (Chrome Apps & Extensions Developer Tool) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohmmkhmmmpcnpikjeljgnaoabkaalbgc [2015-06-06]
CHR HKU\S-1-5-21-532561150-3242956754-1626305917-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fkkcgfbgohboipdhliafmacjnhjbhmim] - https://clients2.google.com/service/update2/crx

Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-532561150-3242956754-1626305917-1001) OperaStable - "C:\Users\hendr_000\AppData\Local\Programs\Opera\Launcher.exe"

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2015-02-04] (Adobe Systems) [Datei ist nicht signiert]
R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [814880 2015-04-03] (IObit)
S4 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-03-17] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S4 Apache2.4; C:\xampp\apache\bin\httpd.exe [22016 2014-07-17] (Apache Software Foundation) [Datei ist nicht signiert]
R2 Bonjour Service; C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe [384512 2015-07-21] (Apple Inc.) [Datei ist nicht signiert]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
S4 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-27] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2753720 2015-07-01] (Microsoft Corporation)
S4 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2015\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) [Datei ist nicht signiert]
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21744 2015-07-09] (Microsoft Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-09] (IObit)
S4 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-03-30] (LogMeIn, Inc.)
S4 metasploitPostgreSQL; C:\metasploit\postgresql\bin\pg_ctl.exe [76288 2015-03-04] (PostgreSQL Global Development Group) [Datei ist nicht signiert]
S4 metasploitProSvc; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 metasploitThin; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 metasploitWorker; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 mysql; C:\xampp\mysql\bin\mysqld.exe [10982912 2014-07-18] () [Datei ist nicht signiert]
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert]
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert]
S3 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2015-06-22] ()
S4 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
S4 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Mister Group)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [134656 2015-07-09] (Microsoft Corporation) [Datei ist nicht signiert]
S4 Tomcat7; C:\xampp\tomcat\bin\tomcat7.exe [80896 2013-07-02] (Apache Software Foundation) [Datei ist nicht signiert]
S4 vncserver; C:\Program Files\RealVNC\VNC Server\vncservice.exe [639808 2015-01-28] (RealVNC Ltd)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [52968 2015-07-07] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4265984 2014-12-11] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-12-21] (Advanced Micro Devices)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-04-15] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-03-30] (LogMeIn Inc.)
S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-08-19] (Riverbed Technology, Inc.)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
S3 SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [16056 2015-08-07] (SlimWare Utilities, Inc.)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-07-09] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [146072 2015-07-09] (Oracle Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [76480 2015-05-21] (VMware, Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-10 16:54 - 2015-08-10 16:55 - 00017135 _____ C:\Users\hendr_000\Desktop\FRST.txt
2015-08-10 16:53 - 2015-08-10 16:53 - 02171392 _____ (Farbar) C:\Users\hendr_000\Desktop\FRST64.exe
2015-08-10 16:53 - 2015-08-10 16:53 - 00000000 ____D C:\Users\hendr_000\Desktop\FRST-OlderVersion
2015-08-10 15:57 - 2015-08-10 15:57 - 00000000 ____D C:\Users\hendr_000\Downloads\metasploitable-linux-2.0.0
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Xamarin
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\ProgramData\MonoTouch
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\ProgramData\Mono for Android
2015-08-09 22:25 - 2015-08-09 22:25 - 00001894 _____ C:\Users\hendr_000\Desktop\VS 2015.lnk
2015-08-09 22:14 - 2015-08-09 22:14 - 00016422 _____ C:\Windows\PFRO.log
2015-08-09 21:59 - 2015-08-10 16:14 - 00000000 ____D C:\Users\hendr_000\Documents\Visual Studio 2015
2015-08-09 21:55 - 2015-08-09 21:55 - 00000000 ____D C:\Program Files (x86)\Xamarin
2015-08-09 21:54 - 2015-08-09 21:55 - 00000000 ____D C:\ProgramData\Monodoc
2015-08-09 20:42 - 2015-08-09 20:42 - 00000000 ____D C:\Program Files\Application Verifier
2015-08-09 20:42 - 2015-08-09 20:42 - 00000000 ____D C:\Program Files (x86)\Application Verifier
2015-08-09 20:41 - 2015-08-09 20:41 - 00000000 ____D C:\ProgramData\Windows App Certification Kit
2015-08-09 20:27 - 2015-08-09 20:27 - 00000000 ____D C:\Program Files (x86)\AppInsights
2015-08-09 20:26 - 2015-08-09 20:26 - 00000000 ____D C:\ProgramData\NuGet
2015-08-09 20:26 - 2015-08-09 20:26 - 00000000 ____D C:\Program Files (x86)\NuGet
2015-08-09 19:56 - 2015-08-09 19:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools
2015-08-09 19:54 - 2015-08-09 19:54 - 00000000 ____D C:\Program Files (x86)\Android
2015-08-09 19:50 - 2015-08-09 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2015-08-09 19:43 - 2015-08-09 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Deutsch
2015-08-09 19:39 - 2015-08-09 19:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-08-09 19:30 - 2015-08-09 20:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2015-08-09 19:29 - 2015-08-09 19:29 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2015-08-09 19:28 - 2015-08-09 19:28 - 00000000 ____D C:\Program Files (x86)\ShellDir
2015-08-09 19:21 - 2015-08-09 19:21 - 00000000 ____D C:\ProgramData\Microsoft DNX
2015-08-09 19:21 - 2015-08-09 19:21 - 00000000 ____D C:\Program Files\Microsoft DNX
2015-08-09 19:08 - 2015-08-09 19:16 - 00000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2015-08-09 19:08 - 2015-08-09 19:08 - 00000000 ____D C:\Users\Administrator\Documents\ManageYourLife 1.0.0
2015-08-09 19:05 - 2015-08-09 19:05 - 00000000 ____D C:\Program Files\IIS Express
2015-08-09 19:05 - 2015-08-09 19:05 - 00000000 ____D C:\Program Files (x86)\IIS Express
2015-08-09 19:03 - 2015-08-09 19:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools
2015-08-09 19:01 - 2015-08-09 19:01 - 00000000 ____D C:\Program Files (x86)\Microsoft WCF Data Services
2015-08-09 18:58 - 2015-08-09 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression
2015-08-09 18:56 - 2015-08-09 18:56 - 00001536 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk
2015-08-09 18:53 - 2015-08-09 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2015-08-09 18:53 - 2015-08-09 18:53 - 00000000 ____D C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-08-09 18:52 - 2015-08-09 19:50 - 00000000 ____D C:\Program Files (x86)\Windows Phone Kits
2015-08-09 18:52 - 2015-08-09 19:48 - 00000000 ____D C:\Program Files (x86)\Microsoft XDE
2015-08-09 18:48 - 2015-08-09 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2015-08-09 18:40 - 2015-08-09 18:40 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 12.0
2015-08-09 18:40 - 2015-08-09 18:40 - 00000000 ____D C:\Program Files (x86)\HTML Help Workshop
2015-08-09 18:30 - 2015-08-09 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2015-08-09 18:27 - 2015-08-09 18:27 - 00000000 ____D C:\Windows\symbols
2015-08-09 18:22 - 2015-08-09 19:40 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-08-09 18:22 - 2015-08-09 18:35 - 00000000 ____D C:\Windows\SysWOW64\1031
2015-08-09 18:22 - 2015-08-09 18:26 - 00000000 ____D C:\Windows\system32\1033
2015-08-09 18:22 - 2015-08-09 18:22 - 00001537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk
2015-08-09 18:22 - 2015-08-09 18:22 - 00000000 ____D C:\Windows\SysWOW64\1033
2015-08-09 18:12 - 2015-08-10 15:42 - 00001022 _____ C:\Windows\setupact.log
2015-08-09 18:12 - 2015-08-09 21:48 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-08-09 18:12 - 2015-08-09 18:22 - 00000000 ____D C:\Windows\system32\1031
2015-08-09 18:12 - 2015-08-09 18:12 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 14.0
2015-08-09 18:12 - 2015-08-09 18:12 - 00000000 _____ C:\Windows\setuperr.log
2015-08-09 17:57 - 2015-06-22 08:31 - 00027840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-08-09 17:56 - 2015-06-22 08:30 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-08-09 17:54 - 2015-08-09 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iFreeUp
2015-08-09 17:47 - 2015-08-09 17:47 - 64294912 _____ C:\Windows\system32\config\COMPONENTS.iobit
2015-08-09 17:47 - 2015-08-09 17:47 - 05189632 _____ C:\Windows\system32\config\DRIVERS.iobit
2015-08-09 17:32 - 2015-06-04 15:28 - 00961192 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00062304 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00064352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-08-09 17:24 - 2015-08-09 17:43 - 873116238 _____ C:\Users\hendr_000\Downloads\metasploitable-linux-2.0.0.zip
2015-08-09 17:23 - 2015-08-10 15:46 - 00000000 ____D C:\ProgramData\VsTelemetry
2015-08-09 17:23 - 2015-08-09 17:23 - 03099760 _____ (Microsoft Corporation) C:\Users\hendr_000\Downloads\vs_community.exe
2015-08-08 19:48 - 2015-08-08 19:48 - 00000000 ____D C:\Program Files\Registrar Registry Manager
2015-08-08 19:45 - 2015-08-08 19:45 - 05032752 _____ (Resplendence Software Projects Sp. ) C:\Users\hendr_000\Downloads\RegistrarHomeV7.exe
2015-08-08 18:39 - 2015-08-09 19:24 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-08-08 18:39 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-08 18:39 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-08 18:39 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-08 18:39 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-08-08 18:39 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-08 18:39 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-08 18:39 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-08 18:39 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-08 18:39 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-08 18:39 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-08 18:38 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-08 18:38 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-07 17:20 - 2015-08-07 17:20 - 00052736 _____ C:\Users\hendr_000\Desktop\CopyBootLog.exe
2015-08-07 15:41 - 2015-08-07 15:41 - 00000000 ____D C:\Users\hendr_000\Downloads\geek_13346
2015-08-07 14:07 - 2015-08-07 14:07 - 00000000 ____D C:\Users\hendr_000\Downloads\gcc-5.1.0
2015-08-06 20:42 - 2015-08-06 20:42 - 01188200 _____ (Uniblue Systems Limited ) C:\Users\hendr_000\Downloads\pcmechanicpm.exe
2015-08-06 19:46 - 2015-08-06 20:38 - 00075139 _____ C:\Users\hendr_000\Desktop\Storereparatur.log
2015-08-06 18:26 - 2015-08-06 18:26 - 00000000 ____D C:\RefreshImage
2015-08-02 14:06 - 2015-08-02 14:07 - 07407166 _____ C:\Users\hendr_000\Downloads\AdventureMap ZeFlu.zip
2015-08-01 11:12 - 2015-08-01 11:12 - 00000440 _____ C:\Users\hendr_000\Downloads\App-Fix.zip
2015-08-01 11:00 - 2015-08-01 11:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-08-01 10:59 - 2015-08-01 10:59 - 00000000 ____D C:\Program Files\Realtek
2015-08-01 10:58 - 2000-01-01 02:00 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2015-08-01 10:58 - 2000-01-01 02:00 - 04460760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-08-01 10:58 - 2000-01-01 02:00 - 03262184 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02907864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-08-01 10:58 - 2000-01-01 02:00 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01413776 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01104040 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00943784 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00856992 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00837776 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00734376 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00654480 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00544400 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2015-08-01 10:58 - 2000-01-01 02:00 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00454288 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00435344 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00369296 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00329360 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00329360 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00250536 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00213432 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 72113152 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-08-01 10:57 - 2000-01-01 02:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 05706688 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 03218800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02847448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02532056 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02036495 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-08-01 10:57 - 2000-01-01 02:00 - 01739992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00168816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 12975360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 12834736 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 05234952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 02789808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01499984 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01365768 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00995120 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00979280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 07087448 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 06242576 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 03182104 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01933584 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01559744 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00336144 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00328816 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00284944 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00096568 _____ C:\Windows\system32\audioLibVc.dll
2015-08-01 10:54 - 2000-01-01 02:00 - 00560328 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-08-01 10:54 - 2000-01-01 02:00 - 00109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-07-31 17:00 - 2015-07-31 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-07-31 16:59 - 2015-08-01 10:52 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Raptr
2015-07-31 16:59 - 2015-07-31 17:00 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-07-31 16:49 - 2015-07-31 16:51 - 00192816 _____ C:\Users\hendr_000\Downloads\raptr_installer.exe
2015-07-31 14:18 - 2015-08-06 19:03 - 00004270 _____ C:\Users\hendr_000\Desktop\FixMetro.cmd
2015-07-31 10:17 - 2015-07-31 10:17 - 00000308 _____ C:\Users\hendr_000\Desktop\MetroTwit.appref-ms
2015-07-31 10:17 - 2015-07-31 10:17 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pixel Tucker Pty Ltd
2015-07-30 19:07 - 2015-07-30 20:49 - 2147484783 _____ C:\Users\hendr_000\Downloads\kali-linux-1.1.0a-i386.iso
2015-07-29 20:55 - 2015-07-29 20:58 - 19302676 _____ C:\Users\hendr_000\Downloads\CommunityShowcaseNaturalLandscapes3.themepack
2015-07-29 20:48 - 2015-07-29 20:48 - 00536906 _____ C:\Users\hendr_000\Downloads\apps.diagcab
2015-07-29 20:48 - 2015-07-29 20:48 - 00423962 _____ C:\Users\hendr_000\Downloads\AppsDiagnostic.diagcab
2015-07-29 17:25 - 2013-06-18 15:12 - 00090304 _____ (Sysinternals) C:\Windows\system32\strings.exe
2015-07-29 17:24 - 2013-06-18 15:12 - 00090304 _____ (Sysinternals) C:\Users\hendr_000\Downloads\strings.exe
2015-07-29 17:23 - 2015-07-29 17:23 - 00050298 _____ C:\Users\hendr_000\Downloads\Strings.zip
2015-07-29 17:13 - 2015-07-29 17:13 - 00000000 ____D C:\Users\hendr_000\AppData\Local\GWX
2015-07-29 17:12 - 2015-07-29 17:12 - 00000000 ____D C:\Users\hendr_000\Downloads\win10fix_full_german.bat_
2015-07-29 17:11 - 2015-07-29 17:11 - 00002929 _____ C:\Users\hendr_000\Downloads\win10fix_full_german.bat_.zip
2015-07-29 16:55 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-07-29 16:55 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-07-29 16:54 - 2015-06-09 20:27 - 00411133 _____ C:\Windows\system32\ApnDatabase.xml
2015-07-29 16:53 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-07-29 16:53 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-07-29 16:53 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-07-29 16:52 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-07-29 16:52 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-07-29 16:52 - 2015-06-10 00:39 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-07-29 16:52 - 2015-06-10 00:39 - 00053248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-07-29 16:52 - 2015-06-10 00:38 - 01201664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-07-28 16:43 - 2015-07-28 16:43 - 00001011 _____ C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk
2015-07-28 16:43 - 2015-07-28 16:43 - 00000981 _____ C:\Users\hendr_000\Desktop\FastCopy.lnk
2015-07-28 16:43 - 2015-07-28 16:43 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\FastCopy
2015-07-28 16:43 - 2015-07-28 16:43 - 00000000 ____D C:\Program Files\FastCopy
2015-07-27 18:36 - 2015-07-27 18:37 - 04954736 _____ (Microsoft Corporation) C:\Users\hendr_000\Downloads\WindowsSetupBox.exe
2015-07-27 18:10 - 2015-07-27 18:10 - 00060965 _____ C:\Users\hendr_000\Downloads\pkeyuibx_v1.5.0.zip
2015-07-27 18:08 - 2015-07-27 18:08 - 01198368 _____ C:\Users\hendr_000\Downloads\Windows Product Key Viewer - CHIP-Installer.exe
2015-07-27 18:02 - 2015-07-27 18:02 - 01198368 _____ C:\Users\hendr_000\Downloads\Windows 8 1 Setup Tool - CHIP-Installer.exe
2015-07-26 17:15 - 2015-07-26 17:15 - 00000000 ____D C:\Users\hendr_000\Downloads\rawwritewin-0.7
2015-07-26 16:33 - 2015-07-26 16:33 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-07-26 16:30 - 2015-07-26 17:14 - 00000000 ____D C:\Users\hendr_000\Desktop\ownOS
2015-07-26 16:27 - 2015-07-26 16:27 - 00214786 _____ C:\Users\hendr_000\Downloads\rawwritewin-0.7.zip
2015-07-26 16:27 - 2015-07-26 16:27 - 00000000 ____D C:\rawrite
2015-07-26 16:24 - 2015-07-26 16:25 - 00000000 ____D C:\NASM 2.11.08
2015-07-26 16:23 - 2015-07-26 16:23 - 00802892 _____ C:\Users\hendr_000\Downloads\nasm-2.11.08-installer.exe
2015-07-26 16:21 - 2015-07-26 16:22 - 01398894 _____ C:\Users\hendr_000\Downloads\nasm-2.11.08.zip
2015-07-25 21:07 - 2015-07-25 21:41 - 00428047 _____ C:\Users\hendr_000\Desktop\FastCopy211_x64.zip
2015-07-25 21:07 - 2015-07-25 21:07 - 00427277 _____ C:\Windows\SysWOW64\FastCopy211_x64.zip
2015-07-25 21:05 - 2015-07-25 21:05 - 00516664 _____ ( ) C:\Users\hendr_000\Downloads\FastCopy211_x64_CB-DL-Manager.exe
2015-07-25 16:55 - 2015-07-25 16:55 - 00000000 _____ C:\Windows\SysWOW64\InstallLocation
2015-07-24 14:03 - 2015-07-24 14:03 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Steam
2015-07-24 14:03 - 2015-07-24 14:03 - 00000000 ____D C:\Users\hendr_000\AppData\Local\CEF
2015-07-23 19:02 - 2015-07-31 10:26 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-23 19:02 - 2015-07-23 19:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-23 19:00 - 2015-07-23 19:01 - 01476720 _____ C:\Users\hendr_000\Downloads\SteamSetup.exe
2015-07-23 18:25 - 2015-07-23 18:35 - 606076928 _____ C:\Users\hendr_000\Downloads\ubuntu-14.04.2-server-i386.iso
2015-07-23 18:21 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-23 18:10 - 2015-07-23 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2015-07-23 18:10 - 2015-07-23 18:10 - 00000000 ____D C:\Program Files\Oracle
2015-07-23 18:10 - 2015-07-09 12:09 - 00958736 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2015-07-23 18:10 - 2015-07-09 12:09 - 00138904 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2015-07-21 14:11 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-21 14:10 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-21 14:10 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-21 14:10 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-21 14:10 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-21 14:10 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-21 14:10 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-21 14:09 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-21 14:09 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-21 14:09 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-21 14:09 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-21 14:09 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-21 14:09 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-21 14:09 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-21 14:09 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-21 14:09 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-21 14:09 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-21 14:09 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-21 14:09 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-21 14:09 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-21 14:07 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-21 14:07 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-21 14:07 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-21 14:07 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-21 14:07 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-21 14:07 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-21 14:07 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-21 12:56 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-21 12:56 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-21 12:55 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-21 12:55 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-21 12:53 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-21 12:52 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-21 12:52 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-21 12:52 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-21 12:52 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-21 12:52 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-21 12:51 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-21 12:51 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-21 12:51 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-21 12:51 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-21 12:51 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-21 12:51 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-21 12:51 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-21 12:51 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-21 12:51 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-21 12:51 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-21 12:51 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-21 12:51 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-21 12:51 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-21 12:51 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-21 12:51 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-21 12:51 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-21 12:51 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-21 12:51 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-21 12:51 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-21 12:51 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-21 12:51 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-21 12:51 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-21 12:51 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-21 12:51 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-21 12:51 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-21 12:51 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-21 12:51 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-21 12:51 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-21 12:51 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-21 12:51 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-21 12:51 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-21 12:51 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-21 12:51 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-21 12:48 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-21 12:48 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-21 12:48 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-21 12:48 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-21 12:47 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-21 12:34 - 2015-07-21 12:48 - 00000000 ____D C:\ftb
2015-07-21 12:22 - 2015-07-21 12:45 - 00000000 ____D C:\Users\hendr_000\AppData\Local\ftblauncher
2015-07-21 12:22 - 2015-07-21 12:37 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\ftblauncher
2015-07-21 12:20 - 2015-07-21 12:21 - 06628862 _____ () C:\Users\hendr_000\Downloads\FTB_Launcher.exe

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-10 16:54 - 2015-06-07 17:02 - 00000000 ____D C:\FRST
2015-08-10 16:53 - 2015-05-30 06:36 - 01305758 _____ C:\Windows\WindowsUpdate.log
2015-08-10 16:45 - 2014-06-21 18:57 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\.minecraft
2015-08-10 16:39 - 2014-01-27 17:50 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-10 16:38 - 2015-06-24 19:06 - 00038372 _____ C:\Users\hendr_000\Desktop\loaded_drivers.txt
2015-08-10 16:11 - 2015-01-29 19:22 - 00000000 ____D C:\Users\hendr_000\AppData\Local\VMware
2015-08-10 16:05 - 2015-01-29 19:22 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\VMware
2015-08-10 16:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-10 15:50 - 2015-04-08 14:50 - 00005188 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for ARBEITSRECHNER-hendrik_2002 Arbeitsrechner
2015-08-10 15:47 - 2014-01-25 17:33 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-532561150-3242956754-1626305917-1001
2015-08-10 15:46 - 2014-01-25 17:44 - 00000000 ___DO C:\Users\hendr_000\SkyDrive
2015-08-10 15:42 - 2015-01-29 19:14 - 00000000 ____D C:\ProgramData\VMware
2015-08-10 15:42 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-09 22:26 - 2014-02-23 22:06 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2015-08-09 22:14 - 2013-08-22 16:44 - 00396520 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-09 22:10 - 2015-06-30 10:08 - 00000286 _____ C:\Windows\Tasks\ASC8_SkipUac_hendrik_2002.job
2015-08-09 21:54 - 2014-02-23 21:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-09 21:52 - 2015-01-21 12:40 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-09 21:43 - 2014-12-06 13:11 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2015-08-09 21:22 - 2014-03-07 20:13 - 00000000 ____D C:\Users\hendr_000\.android
2015-08-09 19:40 - 2015-05-12 17:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-08-09 19:40 - 2014-12-06 13:23 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-08-09 19:38 - 2015-05-12 17:44 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2015-08-09 19:08 - 2014-09-06 11:25 - 00000000 ____D C:\Users\Administrator
2015-08-09 19:05 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-09 18:53 - 2015-05-12 17:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-08-09 18:47 - 2015-05-12 17:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-08-09 18:27 - 2015-05-12 17:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer
2015-08-09 18:14 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-09 18:03 - 2015-03-09 20:30 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Eclipse
2015-08-09 17:55 - 2015-02-04 18:03 - 00000000 ____D C:\ProgramData\ProductData
2015-08-09 17:53 - 2015-02-04 18:04 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\IObit
2015-08-09 17:53 - 2015-02-04 18:03 - 00000000 ____D C:\Program Files (x86)\IObit
2015-08-09 17:50 - 2015-01-30 12:12 - 00000000 ____D C:\Users\hendr_000\VirtualBox VMs
2015-08-09 17:50 - 2015-01-30 12:11 - 00000000 ____D C:\Users\hendr_000\.VirtualBox
2015-08-09 17:47 - 2014-02-06 21:33 - 00246272 ___SH C:\Users\hendr_000\Desktop\Thumbs.db
2015-08-09 17:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF
2015-08-08 20:21 - 2014-02-23 22:13 - 00000000 ____D C:\Users\hendr_000
2015-08-08 20:08 - 2015-04-07 08:46 - 00000000 ____D C:\Users\hendr_000\workspace_projects
2015-08-08 19:58 - 2014-12-10 21:15 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-08 19:58 - 2014-07-31 18:06 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-08 19:55 - 2014-02-09 10:06 - 00000000 ____D C:\Users\hendr_000\AppData\Local\CrashDumps
2015-08-08 18:14 - 2015-06-30 10:08 - 00000322 _____ C:\Windows\Tasks\Uninstaller_SkipUac_hendrik_2002.job
2015-08-07 18:28 - 2015-05-12 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2015-08-07 17:18 - 2015-06-30 10:08 - 00002438 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_hendrik_2002
2015-08-07 11:03 - 2015-06-06 13:32 - 00016056 _____ (SlimWare Utilities, Inc.) C:\Windows\system32\Drivers\SWDUMon.sys
2015-08-06 18:29 - 2014-02-23 22:13 - 00012102 _____ C:\Windows\diagerr.xml
2015-08-06 18:29 - 2014-02-23 22:13 - 00011231 _____ C:\Windows\diagwrn.xml
2015-08-05 20:13 - 2015-06-07 16:59 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-08-05 18:37 - 2015-06-06 13:31 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-05 18:36 - 2015-06-06 13:30 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-05 16:05 - 2015-06-06 13:56 - 00000000 ____D C:\ProgramData\HitmanPro
2015-08-02 19:14 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-08-01 11:02 - 2013-10-08 16:45 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-07-31 18:02 - 2014-02-23 22:06 - 00000000 ____D C:\AMD
2015-07-31 14:12 - 2014-07-27 17:04 - 00000000 ____D C:\Users\hendr_000\.eclipse
2015-07-31 10:28 - 2015-01-29 19:28 - 00000000 ____D C:\Users\hendr_000\Documents\Virtual Machines
2015-07-31 10:20 - 2014-03-22 10:15 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Deployment
2015-07-30 21:48 - 2013-08-22 15:25 - 00786432 ___SH C:\Windows\system32\config\BBI
2015-07-30 16:49 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-07-29 18:34 - 2014-01-25 17:39 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Apps\2.0
2015-07-26 16:34 - 2014-08-23 12:55 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Notepad++
2015-07-26 16:33 - 2014-08-23 12:55 - 00000000 ____D C:\Program Files (x86)\Notepad++
2015-07-25 21:05 - 2015-04-09 11:57 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-25 17:32 - 2014-01-25 17:00 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Packages
2015-07-24 16:28 - 2014-12-24 19:48 - 00000000 ____D C:\Program Files (x86)\Minecraft
2015-07-24 16:27 - 2015-01-14 12:48 - 00000000 ____D C:\Users\hendr_000\.gimp-2.8
2015-07-24 14:10 - 2015-02-04 18:03 - 00000000 ____D C:\ProgramData\IObit
2015-07-23 21:37 - 2015-04-09 11:57 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-07-23 20:17 - 2014-02-06 20:36 - 00000000 ____D C:\Windows\system32\MRT
2015-07-23 19:20 - 2014-02-11 19:35 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\FileZilla
2015-07-23 18:12 - 2015-06-09 16:53 - 00000000 ____D C:\Users\hendr_000\Downloads\forge
2015-07-23 18:11 - 2015-06-09 16:57 - 00000000 ____D C:\Users\hendr_000\Downloads\setups
2015-07-21 14:09 - 2014-01-25 17:21 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-07-21 14:08 - 2014-12-23 17:32 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-07-21 12:50 - 2014-03-29 20:01 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-21 12:50 - 2014-03-29 20:01 - 00003884 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-21 12:50 - 2014-03-29 20:01 - 00001148 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-21 12:50 - 2014-03-29 20:01 - 00001144 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-21 12:36 - 2014-01-25 17:34 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-07-21 12:28 - 2014-03-07 21:33 - 00000000 ____D C:\ProgramData\Oracle
2015-07-21 12:25 - 2014-12-24 21:28 - 00110688 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2015-07-21 12:25 - 2014-12-24 21:27 - 00000000 ____D C:\Program Files\Java
2015-07-13 23:10 - 2015-03-14 09:02 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2015-03-14 09:02 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-02-26 20:51 - 2015-02-26 20:51 - 0000000 ___RH () C:\Users\hendr_000\AppData\Roaming\b4d6e8f4ed70928182ebe608f6b39bab2
2015-05-15 12:12 - 2015-05-15 12:12 - 0000046 _____ () C:\Users\hendr_000\AppData\Roaming\Camdata.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0000408 _____ () C:\Users\hendr_000\AppData\Roaming\CamLayout.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0000408 _____ () C:\Users\hendr_000\AppData\Roaming\CamShapes.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0004536 _____ () C:\Users\hendr_000\AppData\Roaming\CamStudio.cfg
2014-09-01 10:18 - 2014-09-01 10:18 - 0002086 _____ () C:\Users\hendr_000\AppData\Roaming\UIZJU
2015-05-15 12:11 - 2015-05-15 12:11 - 0000096 _____ () C:\Users\hendr_000\AppData\Roaming\version2.xml
2014-03-07 21:43 - 2014-12-23 16:55 - 0000113 _____ () C:\Users\hendr_000\AppData\Roaming\WB.CFG
2014-12-08 18:03 - 2014-12-08 18:03 - 0202370 _____ () C:\Users\hendr_000\AppData\Local\debuggee.mdmp
2015-01-29 21:01 - 2015-07-01 11:23 - 0000600 _____ () C:\Users\hendr_000\AppData\Local\PUTTY.RND
2015-06-22 17:08 - 2015-06-22 17:08 - 0002836 _____ () C:\Users\hendr_000\AppData\Local\recently-used.xbel
2014-12-26 12:55 - 2015-04-18 07:59 - 0007595 _____ () C:\Users\hendr_000\AppData\Local\Resmon.ResmonCfg
2015-01-27 09:36 - 2015-01-27 09:36 - 0000000 _____ () C:\Users\hendr_000\AppData\Local\{A9E8EC64-9A12-4DF0-8909-6F0BE58BB854}
2015-03-22 17:22 - 2015-03-22 17:22 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip
2015-06-06 14:28 - 2015-06-06 14:28 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\Administrator\AppData\Local\Temp\borlndlm.dll
C:\Users\Dirk\AppData\Local\Temp\{9AB2D6BA-D314-4579-92EB-5166BD3BD792}-35.0.1916.153_chrome_installer.exe


==================== Bamital & volsnap Check =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-08-06 17:13

==================== Ende von log ============================

--- --- ---

Wandalensalz 10.08.2015 16:05

Addition.txt:

FRST Additions Logfile:
Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-08-2015
durchgeführt von hendrik_2002 (2015-08-10 16:57:39)
Gestartet von C:\Users\hendr_000\Desktop
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-532561150-3242956754-1626305917-500 - Administrator - Enabled) => C:\Users\Administrator
Dirk (S-1-5-21-532561150-3242956754-1626305917-1004 - Administrator - Enabled) => C:\Users\Dirk
Dummy-Account (S-1-5-21-532561150-3242956754-1626305917-1013 - Limited - Enabled)
Gast (S-1-5-21-532561150-3242956754-1626305917-501 - Limited - Disabled)
Hendrik2002 (S-1-5-21-532561150-3242956754-1626305917-1017 - Administrator - Enabled)
hendrik_2002 (S-1-5-21-532561150-3242956754-1626305917-1001 - Administrator - Enabled) => C:\Users\hendr_000
HomeGroupUser$ (S-1-5-21-532561150-3242956754-1626305917-1006 - Limited - Enabled)
Katja (S-1-5-21-532561150-3242956754-1626305917-1009 - Administrator - Enabled)
Niklas Steinmetz (S-1-5-21-532561150-3242956754-1626305917-1008 - Limited - Enabled) => C:\Users\Niklas Steinmetz.HendriksPodpal

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

64 Bit HP CIO Components Installer (Version: 7.2.4 - Hewlett-Packard) Hidden
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated)
AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2022 - Acer Incorporated)
Adobe After Effects 7.0 (HKLM-x32\...\Adobe After Effects 7.0) (Version: 7.0.0.244 - Adobe Systems, Inc.)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\{F22C3C05-B1D9-47FF-AA17-4F9DCBFE850F}) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.194 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Premiere Pro 2.0 (HKLM-x32\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.)
Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.3.0 - IObit)
AMD Catalyst Install Manager (HKLM\...\{ACF4E7FE-650D-9BD7-BAE5-1AD061F40F69}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
Application Insights Tools for Visual Studio 2015 (x32 Version: 3.3.1 - Microsoft Corporation) Hidden
Ashampoo WinOptimizer 2015 v.11.00.50 (HKLM-x32\...\{4209F371-3276-A8F7-B851-845A83732AB4}_is1) (Version: 11.00.50 - Ashampoo GmbH & Co. KG)
Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft)
Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Bandicam (HKLM-x32\...\Bandicam) (Version: 2.1.2.740 - Bandisoft.com)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Windows Phone 8.0 (x32 Version: 3.0.30924.0 - Microsoft Corporation) Hidden
Blender (HKLM\...\Blender) (Version: 2.73a - Blender Foundation)
Borland C++Builder 6 (HKLM-x32\...\{2864C41B-EF2D-4640-95A2-526276524519}) (Version: 6.0 - Borland Software Corporation)
Brackets (HKLM-x32\...\{4BCC5124-095C-4871-8562-55FA29DD8773}) (Version: 1.1 - brackets.io)
Build Tools - amd64 (Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools - x86 (x32 Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools for Windows 10 (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Build Tools Language Resources - amd64 (Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools Language Resources - x86 (x32 Version: 12.0.31010 - Microsoft Corporation) Hidden
Buildtools für Windows 10 - DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated)
clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
CodedUITest81 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
CodedUITestUAP (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Craften Terminal 4.1.1 (HKLM-x32\...\{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1) (Version: 4.1.1 - Craften.de)
Crossfire Europe (HKLM-x32\...\Crossfire Europe) (Version: 1.172 - SG Europe)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Devenv-Ressourcen für Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Dotfuscator and Analytics Community Edition 5.18.1 (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
Dotfuscator and Analytics Community Edition Language Pack 5.18.1 de-DE (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
Entity Framework 6.1.3 Tools  for Visual Studio 2015 (HKLM-x32\...\{1A8A9739-BAD7-491F-B5B9-A79A2B965422}) (Version: 14.0.40302.0 - Microsoft Corporation)
Epic Games Launcher (HKLM\...\{84438A71-40ED-4E6F-9C7E-58FE0F61F692}) (Version: 1.1.28.0 - Epic Games, Inc.)
Erforderliche Komponenten für SSDT  (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation)
FileZilla (remove only) (HKLM-x32\...\FileZilla) (Version:  - )
FileZilla Client 3.10.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse)
Firefox Developer Edition 40.0a2 (x86 en-US) (HKLM-x32\...\Firefox Developer Edition 40.0a2 (x86 en-US)) (Version: 40.0a2 - Mozilla)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Pascal 2.6.4 (HKLM-x32\...\FreePascal_is1) (Version:  - Free Pascal Team)
Gemeinsam genutzte Microsoft Azure-Komponenten für Visual Studio 2015 Sprachpaket (DEU) - v1.5 (x32 Version: 1.5.30619.1602 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Git version 1.9.5-preview20150319 (HKLM-x32\...\Git_is1) (Version: 1.9.5-preview20150319 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version:  - EFD Software)
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.242 - SurfRight B.V.)
IDE Tools for Windows 10 (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated)
IDE-Tools für Windows 10 - DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
iFreeUp 1.0 (HKLM-x32\...\iFreeUp_is1) (Version: 1.0.10 - IObit)
IIS 10.0 Express (HKLM\...\{5984D8DA-C1AF-4284-9C88-D7150425B315}) (Version: 10.0.1734 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - )
Intellisense Lang Pack Mobile Extension SDK 10.0.10240.0 (x32 Version: 10.0.10240.0 - Microsoft Corporation) Hidden
Java 7 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417025F0}) (Version: 7.0.250 - Oracle)
Java 7 Update 75 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417075FF}) (Version: 7.0.750 - Oracle)
Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation)
Java SE Development Kit 7 Update 75 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170750}) (Version: 1.7.0.750 - Oracle)
Java SE Development Kit 8 Update 31 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180310}) (Version: 8.0.310.13 - Oracle Corporation)
Kits Configuration Installer (x32 Version: 10.0.26624 - Microsoft) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated)
LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden
LocalESPCui for de-de (x32 Version: 8.59.29989 - Microsoft) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden
Malwarebytes Anti-Malware Version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Metasploit (HKLM-x32\...\Metasploit 4.11.1) (Version: 4.11.1 - Rapid7)
MetroTwit (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\6d9570ab26892611) (Version: 1.2.0.1 - Pixel Tucker Pty Ltd)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{B941AFB4-8851-33A1-9E72-0C33D463C41C}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4737.1003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\OneDriveSetup.exe) (Version: 17.3.5907.0716 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 DEU  (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - DEU (14.0.50616.0) (HKLM-x32\...\{FA604873-01A0-4834-AF87-418534E465BB}) (Version: 14.0.50616.0 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects  (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Transact-SQL ScriptDom  (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 T-SQL Language Service  (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 (HKLM-x32\...\{5c2b89b0-08cc-492f-b086-21e4d6ae7be4}) (Version: 14.0.23107.10 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation)
Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM\...\{63967E7E-5D53-42FA-A7B2-DC50FB0F976F}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM-x32\...\{2ADB6B9D-83C6-494E-B8AE-E815956A4670}) (Version: 12.0.2402.11 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{02BAAFC5-4E16-42E6-A9F6-8DDE0B7ED3B8}) (Version: 1.0.0.0 - Mojang)
Mit C# erstellte geräteübergreifende Hybrid-Apps - Vorlagen - DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 36.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0 (x86 de)) (Version: 36.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0 - Mozilla)
Mozilla Thunderbird 24.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.3.0 (x86 de)) (Version: 24.3.0 - Mozilla)
MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Nidhogg v1.0 (HKLM-x32\...\Nidhogg v1.01.0) (Version: 1.0 - Friends in War)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.9.2 - Notepad++ Team)
OEM Application Profile (HKLM-x32\...\{276FD4A2-030F-8A24-7DFE-9B1384131BCD}) (Version: 1.00.0000 - Ihr Firmenname)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer)
Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2008 - Acer)
Opera Stable 30.0.1835.59 (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Opera 30.0.1835.59) (Version: 30.0.1835.59 - Opera Software)
Oracle VM VirtualBox 5.0.0 (HKLM\...\{FCD0B365-2189-45F3-9AF2-2BCED86C121A}) (Version: 5.0.0 - Oracle Corporation)
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM-x32\...\{3F514FDC-F0F2-3B99-86D6-F7B3A2679B39}) (Version: 4.5.51209 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6 (Deutsch) (HKLM-x32\...\{7227EFF8-BC26-44D4-B91D-969A82DBDF4A}) (Version: 4.6.00081 - Microsoft Corporation)
PreEmptive Analytics Client German Language Pack (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation)
Projekt- und Elementvorlagen für Visual Studio Community 2015 – DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Projekt- und Elementvorlagen für Visual Studio Express 2015 für Windows 10 – DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Projekt- und Elementvorlagen für Visual Studio Professional 2015 – DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Python 3.4.3 (HKLM-x32\...\{CCD588A7-8D55-49F1-A30C-47FAB40889ED}) (Version: 3.4.16490 - Python Software Foundation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.224 - Qualcomm Atheros Communications)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.20 - Qualcomm Atheros Inc.)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.55 - Qualcomm Atheros)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7509 - Realtek Semiconductor Corp.)
Registrar Registry Manager 7.75 (HKLM\...\RegistrarHome_is1) (Version:  - Resplendence Software Projects Sp.)
Resource Hacker Version 4.0.0 (HKLM-x32\...\ResourceHacker_is1) (Version:  - )
Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Secunia PSI (3.0.0.10004) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.10004 - Secunia)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Silent Hunter 4 Wolves of the Pacific (HKLM-x32\...\{0D005F09-A5F4-473B-A901-5735C6AF5628}) (Version: 1.00.0000 - Ubisoft)
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
System Explorer 6.4.2 (HKLM-x32\...\{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1) (Version:  - Mister Group)
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
TIPP10 Version 2.1.0 (HKLM-x32\...\TIPP10_is1) (Version:  - (c) 2006-2011, Tom Thielicke IT Solutions)
TypeScript Power Tool (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0 (HKLM-x32\...\{4cde0c8c-47b3-448f-babf-fe5d392432a6}) (Version: 1.5.23128.0 - Microsoft Corporation)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
UltraUXThemePatcher (HKLM-x32\...\UltraUXThemePatcher) (Version: 2.5.6.0 - Manuel Hoefs (Zottel))
Unity (HKLM-x32\...\Unity) (Version: 5.0.1f1 - Unity Technologies ApS)
Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Visual C++ für Mobile-Entwicklung (Android-Unterstützung) (HKLM-x32\...\{fd8b6372-b8b3-4a14-bb21-fbc5cb94f7ac}) (Version: 14.0.23027.0 - Microsoft Corporation)
Visual C++ für Mobile-Entwicklung (iOS-Unterstützung) (HKLM-x32\...\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}) (Version: 14.0.23027.0 - Microsoft Corporation)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VMware Player (HKLM-x32\...\VMware_Player) (Version: 7.1.2 - VMware, Inc)
VMware Player (Version: 7.1.2 - VMware, Inc.) Hidden
VNC Server 5.2.3 (HKLM\...\{0D2201F0-2E7B-4C89-8C5D-03D3F5BB5042}) (Version: 5.2.3 - RealVNC Ltd)
VNC Viewer 5.2.3 (HKLM\...\{8824CB84-60DF-4CBC-AB3A-7C5AB2A41F31}) (Version: 5.2.3 - RealVNC Ltd)
WCF Data Services 5.6.4 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation)
Webocton - Scriptly 0.8.95.6 (HKLM-x32\...\Webocton - Scriptly_is1) (Version: 0.8.95.6 - Webocton)
WinAppDeploy (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.26624 (HKLM-x32\...\{e7a0c8b6-b0e9-41e2-8a0a-a6784f88d1d4}) (Version: 10.0.26624 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies)
WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Wireshark 1.12.3 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.12.3 - The Wireshark developer community, hxxp://www.wireshark.org)
Wise Registry Cleaner 8.61 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 8.61 - WiseCleaner.com, Inc.)
Xamarin (HKLM-x32\...\{B6F4249F-5053-43D5-BA37-D942230C825B}) (Version: 3.11.816.0 - Xamarin)
XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-5 - Bitnami)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Wiederherstellungspunkte =========================

09-08-2015 17:28:59 Microsoft Visual Studio Community 2015
09-08-2015 17:33:34 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
09-08-2015 17:37:30 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
09-08-2015 17:41:56 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026
09-08-2015 17:44:22 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
09-08-2015 17:47:02 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
09-08-2015 18:16:58 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026
09-08-2015 19:56:48 TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0
09-08-2015 20:03:53 Update for Microsoft Visual Studio 2015 (KB3073097)
09-08-2015 20:28:43 Windows Software Development Kit - Windows 10.0.26624
09-08-2015 21:37:52 Microsoft Visual Studio 2015 Tools für Windows 10 (Technical Preview)
09-08-2015 21:47:29 Update for Microsoft Visual Studio 2015 (KB3073097)
09-08-2015 21:48:46 Visual C++ für Mobile-Entwicklung (iOS-Unterstützung)
09-08-2015 21:50:23 Visual C++ für Mobile-Entwicklung (Android-Unterstützung)

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {07B9F40D-4E63-4DAF-8FD6-4EE67D558E0E} - System32\Tasks\{C7EAF7A5-FBDB-4A82-91B9-18268A1FDEE1} => Chrome.exe hxxp://ui.skype.com/ui/0/6.3.73.105.457/de/abandoninstall?page=tsMain
Task: {09F3DD2C-71B3-4A85-9364-C6386EA7E94C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {2676A993-D66B-4448-A860-F9763BEEDE42} - System32\Tasks\Opera scheduled Autoupdate 1426179695 => C:\Users\hendr_000\AppData\Local\Programs\Opera\launcher.exe [2015-06-10] (Opera Software)
Task: {33A65D12-4ED9-434B-96F9-68D1F9241A8B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-532561150-3242956754-1626305917-1001
Task: {37CB870C-FA33-4F14-9834-5B919D4B56F6} - System32\Tasks\Uninstaller_SkipUac_hendrik_2002 => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {395A679E-F1C7-4FA0-A08F-2B1F3D7E8E0F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {3C052D58-9ADE-4287-94F2-CA7AEFE0D177} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {45BB8FB7-E03E-47DC-9513-D76090D256DB} - System32\Tasks\{2EFDEB36-276A-48F3-BFAA-5F39F38EB409} => pcalua.exe -a C:\Users\hendr_000\Desktop\Forge_Server\forge-1.8-11.14.0.1285-1.8-installer-win.exe -d C:\Users\hendr_000\Desktop\Forge_Server
Task: {5960B03A-15EA-446B-A907-4FACA2EF3BDD} - System32\Tasks\{AA50E2BC-3878-43CC-9F92-EAF47C08AB82} => pcalua.exe -a C:\Users\hendr_000\Downloads\forge-1.7.10-10.13.3.1355-1.7.10-installer-win.exe -d C:\Users\hendr_000\Downloads
Task: {66C3A4D9-DEB8-4C5B-A1B7-F5C5B803BEA4} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] ()
Task: {6FE0E8CB-D288-41EA-BA1E-74239258B658} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.)
Task: {74768E11-5380-4F57-93C3-438B4A630F6A} - System32\Tasks\ASC8_SkipUac_hendrik_2002 => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2015-06-16] (IObit)
Task: {BB059E76-F9BF-44C9-B6ED-13F7B3CEF254} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation)
Task: {C426D609-BEA0-4503-A8F1-8EBBCE15C292} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2015-06-10] (IObit)
Task: {CB016BC7-2B36-4262-A1E8-B434854BFE31} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation)
Task: {D2174D06-84F3-46A9-9998-A0B5934A7B07} - System32\Tasks\Microsoft Office 15 Sync Maintenance for ARBEITSRECHNER-hendrik_2002 Arbeitsrechner => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-06-02] (Microsoft Corporation)
Task: {E2F4864D-34CE-4271-9B2D-F92D332804DB} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {E95F795D-D6BF-41F2-95CF-E279E4F0C080} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation)
Task: {E9D16D5F-9981-4966-AF14-EC8FFEC0427B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.)
Task: {EC96A4FB-11A6-4682-82A5-ADD27F0D47CA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ASC8_SkipUac_hendrik_2002.job => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\UIZJU.job => C:\Users\hendr_000\AppData\Roaming\UIZJU.exe <==== ACHTUNG
Task: C:\Windows\Tasks\Uninstaller_SkipUac_hendrik_2002.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2014-06-20 13:15 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2013-10-08 17:14 - 2013-02-20 22:58 - 00111176 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2015-03-02 16:43 - 2015-03-02 16:43 - 00099288 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2015-06-30 10:04 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\sqlite3.dll
2015-06-30 10:06 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madExcept_.bpl
2015-06-30 10:06 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madBasic_.bpl
2015-06-30 10:06 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madDisAsm_.bpl
2015-02-04 18:03 - 2014-12-18 21:04 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2015-08-09 17:53 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\iFreeUp\madExcept_.bpl
2015-08-09 17:53 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\iFreeUp\madBasic_.bpl
2015-08-09 17:53 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\iFreeUp\madDisAsm_.bpl
2015-05-31 07:59 - 2015-05-31 07:59 - 01301696 _____ () C:\Program Files (x86)\VMware\VMware Player\libxml2.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Dirk\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Dirk\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\hendr_000\SkyDrive:ms-properties

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"

==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com
IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com
IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\google.de -> hxxps://www.google.de
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\it-fachportal.de -> hxxps://www.it-fachportal.de
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\localhost -> hxxps://localhost
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\localhost -> hxxp://localhost
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\sony.com -> sony.com

IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\100sexlinks.com -> 100sexlinks.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\101hotteens.com -> 101hotteens.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\101lottery.com -> 101lottery.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\123expressview.com -> 123expressview.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\123found.com -> 123found.com

Da befinden sich 4787 mehr eingeschränkte Seiten.

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-532561150-3242956754-1626305917-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

MSCONFIG\Services: a2AntiMalware => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: AMD FUEL Service => 2
MSCONFIG\Services: Apache2.4 => 2
MSCONFIG\Services: AtherosSvc => 2
MSCONFIG\Services: Avira.OE.ServiceHost => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: BstHdAndroidSvc => 2
MSCONFIG\Services: BstHdLogRotatorSvc => 2
MSCONFIG\Services: CCDMonitorService => 2
MSCONFIG\Services: DfSdkS => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: FileZilla Server => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: Hamachi2Svc => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMIGuardianSvc => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: McAfee SiteAdvisor Service => 2
MSCONFIG\Services: metasploitPostgreSQL => 2
MSCONFIG\Services: metasploitProSvc => 2
MSCONFIG\Services: metasploitThin => 2
MSCONFIG\Services: metasploitWorker => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: mysql => 2
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: Razer Game Scanner Service => 2
MSCONFIG\Services: rpcapd => 3
MSCONFIG\Services: RzKLService => 2
MSCONFIG\Services: Secunia PSI Agent => 2
MSCONFIG\Services: Secunia Update Agent => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: SlimService => 2
MSCONFIG\Services: StartMenuService => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: SystemExplorerHelpService => 3
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\Services: Tomcat7 => 2
MSCONFIG\Services: TuneUp.UtilitiesSvc => 2
MSCONFIG\Services: vncserver => 3
MSCONFIG\Services: WSearch => 2
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "mcpltui_exe"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "YTDownloader"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "FileZilla Server Interface"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKLM\...\StartupApproved\Run32: => "Andy"
HKLM\...\StartupApproved\Run32: => "avgnt"
HKLM\...\StartupApproved\Run32: => "emsisoft anti-malware"
HKLM\...\StartupApproved\Run32: => "SystemExplorerAutoStart"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "baerenmarke-widget.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "Adobe Gamma.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "SkyDrive"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "YTDownloader"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Dxtory Update Checker 2.0"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "AppEx Accelerator UI"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "msnmsgr"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Browser Extensions"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "DesktopOK"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Search Protection"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "XAMPP Control Panel"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Advanced SystemCare 8"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Steam"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{F603271F-944B-498D-AC22-4EAF1D17D497}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{8124257A-9E01-4AA5-ABC1-9A3123988F8B}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{58F47C55-D17A-47EC-8210-FC35A9ECA66D}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{F9C56998-E744-46C8-9D5A-4B17A51170BA}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{110661DB-3FDC-4FBB-9541-3908BC904AFC}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{21DE293D-9203-44EC-B297-61B809F74DB0}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{3E8C9A49-86D9-4A33-9F0E-66247067111A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{0B99A754-8F02-41E1-9E03-86D4B31C07A4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{937AF17E-DE8A-4FF7-BFE5-5ECE5D746A91}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{201F7BC2-A8E6-435C-9C22-3E3C55CD16D2}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{7065C90E-0A0D-4152-992B-29659584DB4D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{AD4DBDEE-AFF6-4623-B635-59FBD7140C4F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{A062D843-8F1F-4086-A697-0FD176A8A4CE}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{6517DA4C-6C29-4B63-B979-26646CB38DE9}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{F3988EAE-EE5B-4C4E-8577-5531B31B2D54}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{30FC91E0-54F5-4661-A362-22391693FBD1}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{14A5D67B-A0CC-4FC1-B8E0-27E11FE3C812}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{AC7545A3-C40E-42BC-B021-A409093FD5D5}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{C49ED8EA-CEDC-480F-8268-72D9D2E80236}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{98895709-AB83-40CA-98C2-0FCEB9C11B0F}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{ED980AF1-7766-421D-9BEF-34D3EAD5ED61}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [TCP Query User{C51DEAA9-3A39-4D25-8CAE-98D98A6CCA14}C:\users\hendr_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hendr_000\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{78A6F80D-4855-4333-A219-533386A8846C}C:\users\hendr_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hendr_000\appdata\roaming\spotify\spotify.exe
FirewallRules: [{25D3D9EE-3067-4C7D-A001-C7BB1501B972}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{3E6B2FAB-02C6-4785-8D12-F3F53D61F4B2}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{E3EDC567-9BD2-40E6-A1EB-5E7D22EE01F1}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{D0A6FA2F-DAD8-4F17-87BF-E3A9B2741487}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [TCP Query User{966E9B2B-C676-4293-BB2D-AB13D02E8721}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{5CAC66F1-A67C-437B-8AF5-800A25FE0B92}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{F25D1282-8486-4566-9071-614CA365D414}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{2F74FC5E-6F3A-4C68-B41B-92313370478D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{D4291174-E709-442A-8B13-5907C13CDD1C}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{EF07999A-2EC7-4029-A9DD-087B14ED9F38}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{D704C46B-A0E9-4437-A026-DD697C261F3C}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{F2F5AFF0-B67A-4812-9D68-04A5CF501D01}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{1E82290E-6F43-4839-9A25-504EE7BC17A8}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{4EC33B1B-7105-458D-8AC5-CC5D4F756A28}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{B68AA5F6-9E41-465D-B3F3-48242FAFFABD}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [{8416B314-3B5C-4D5D-99A6-EC2DE485097C}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [TCP Query User{8228AF30-B5A9-4EC1-B545-6FA81CE74AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{E6F40B64-B57A-4C15-8C2C-49BC6E3E8FB3}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{BCA36857-D883-44C0-8DC2-9B618BF56C6B}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{C7578792-77F8-46BE-B86E-3A5F838C3B48}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{77ADEE26-B33C-4BF0-9F83-8E82C83D39F0}C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe] => (Allow) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [UDP Query User{71EA72B4-D2F6-4874-B079-256FB5001B34}C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe] => (Allow) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{13AD290E-BC56-40BC-993D-552F7C50D99F}] => (Block) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{2E56D11E-1DD0-4C6E-97A0-D8AEB420D402}] => (Block) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{11B68A8A-F88A-4C59-8D9B-863AFC4A8FA8}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{F0B07D80-7C82-412A-BFDE-F0C3AF2FBC4B}] => (Allow) LPort=2869
FirewallRules: [{0BC3FFDC-99C1-4A49-9F60-86A73EB7C207}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{5026E3CD-CE3F-4F23-B7A1-EEBEBE6B93A3}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{3B8F6EAA-C35F-42E8-9FEC-0CB57CC15A05}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [{1EC34949-E805-4158-AA08-5C4EA2CF8CA9}] => (Block) C:\program files (x86)\brackets\node.exe
FirewallRules: [{312D4831-5FB1-441E-8ADD-05B62262FDE2}] => (Block) C:\program files (x86)\brackets\node.exe
FirewallRules: [TCP Query User{75B351CF-A13D-47E9-A3D2-91B4CD61C40A}C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe
FirewallRules: [UDP Query User{1FB4D50B-A12B-4E8D-B4C7-B68FDFEBB3C5}C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe
FirewallRules: [{0843895D-6295-4013-8667-8D73952E5907}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{C1FDEF06-46C9-4C74-A413-A6FB6C898410}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{E5E28012-02C1-46F0-96DA-B1F6099ABFDF}C:\metasploit\ruby\bin\ruby.exe] => (Allow) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [UDP Query User{D4482865-0BDB-4A24-9FD2-72567ABB7E8E}C:\metasploit\ruby\bin\ruby.exe] => (Allow) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [{8B632EB9-B21D-406E-B9D0-B30D6C4E377A}] => (Block) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [{6C37860C-6BDC-4F3C-A726-82BB64A610BE}] => (Block) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [TCP Query User{C2BF4B57-117F-4B6C-BB07-9F5A32E4FC8F}C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe
FirewallRules: [UDP Query User{45A7B396-1FF5-4D6B-9B7B-2B5A030BF2A2}C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe
FirewallRules: [TCP Query User{0469D19F-D3D1-4857-9795-59CDD7F044CF}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{6F497ACC-EA15-437F-8940-453641BC42EB}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [{A8770975-DA84-498D-B8DA-8C5513D789AB}] => (Block) C:\xampp\apache\bin\httpd.exe
FirewallRules: [{3E26A083-9947-4AEC-8A50-300623DCCDAE}] => (Block) C:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{DD19F79F-C9BC-4DDC-982B-73EF0ABB22EB}C:\program files (x86)\cryengine\bin64\editor.exe] => (Allow) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [UDP Query User{6D15D010-03CE-4475-BB59-FA9ADA3C83D2}C:\program files (x86)\cryengine\bin64\editor.exe] => (Allow) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [{BF69B881-B3AA-4C53-A25E-A6B884D9E701}] => (Block) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [{68E88234-A025-4671-A891-776DB26DA38B}] => (Block) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [TCP Query User{B7B9E0B8-B1F3-435B-9788-62E8A6B9A872}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [UDP Query User{00AAE738-611C-48EC-900A-12AFD3FCAFF9}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{D5D98A23-ADE4-44D5-81F9-CAC1B3950615}] => (Block) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{1054CED2-AD7C-4B03-8A49-1EED7C02EFB9}] => (Block) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [TCP Query User{AB1D47A1-9E92-4AAC-BB5E-DA0C8FD4EF7C}C:\program files (x86)\cryengine\bin64\gamesdk.exe] => (Allow) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [UDP Query User{6178A0C5-398B-48E1-9D81-FE61B22EEA6F}C:\program files (x86)\cryengine\bin64\gamesdk.exe] => (Allow) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [{E51989AF-29B9-4EA4-A139-47DB360F67E0}] => (Block) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [{2BF15603-7089-4657-AD03-C61CDE23538E}] => (Block) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [TCP Query User{79A5DCA7-57DE-48B1-A927-D33F287E54B2}C:\users\hendr_000\documents\cryengine\bin64\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [UDP Query User{32A12F2F-F112-44DA-BE11-31BF731E9E3C}C:\users\hendr_000\documents\cryengine\bin64\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [{458335D4-AF90-4202-A408-1C24E6B62BBB}] => (Block) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [{20CDAE8E-5115-4272-B9E6-037EFCB98608}] => (Block) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [TCP Query User{6A9E6584-6304-42F5-993B-FBDCF075838A}C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe
FirewallRules: [UDP Query User{376D2007-B844-47FD-BE56-641712F1D324}C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe
FirewallRules: [TCP Query User{C95AF740-FE53-4E45-8DCA-33EB7B1AAED9}C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [UDP Query User{8BCD298F-9269-4428-9D23-151F1538120A}C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [{D2F96B2D-CCD8-4891-8050-C2DFD04EACBA}] => (Block) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [{C76A41AD-FA49-43E4-96FE-5EE84A3DD881}] => (Block) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [TCP Query User{8D602232-55C1-41DD-8A01-F33A236DB5AE}C:\users\hendr_000\documents\cryengine\bin32\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [UDP Query User{106CDF08-7E78-4A34-8001-6EE16CB96766}C:\users\hendr_000\documents\cryengine\bin32\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [{D0A9B9B4-68D4-4FEC-B37F-67AEEFF0B203}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [{323C0C18-6D80-4559-896D-E5AF6911C1E7}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [TCP Query User{6FE9F28C-F70D-4C5D-B9FF-019AFEEC7B93}C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [UDP Query User{C1804E13-76AB-41DB-9328-5257004FE841}C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [{D6EB6422-202A-4A5E-BF0B-B0A6B59D50E4}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [{242B9913-EA5A-4C4E-AAE3-16230FB957E4}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [TCP Query User{195EE537-01C6-44CD-A307-800C1CF94A87}C:\cpp\examples\internet\chat\chat.exe] => (Allow) C:\cpp\examples\internet\chat\chat.exe
FirewallRules: [UDP Query User{DABE827D-34BA-44A8-9A8B-B6BC17E4E3C5}C:\cpp\examples\internet\chat\chat.exe] => (Allow) C:\cpp\examples\internet\chat\chat.exe
FirewallRules: [{56CF1C8A-1443-4F27-8C85-F6F5F743323A}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe
FirewallRules: [{6409AB8A-8598-45F1-AE83-8F1624FE5B58}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe
FirewallRules: [TCP Query User{314F0CD0-1A80-483F-82FF-36198B8A1FDB}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{9957FF52-D7D5-4B4B-8FA1-FCA9A71A2BF3}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{F87B52C1-E5E6-47DB-BCA6-B162A70A7ACC}] => (Block) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{63A0C587-58E4-407A-8430-F91740892A6D}] => (Block) C:\program files\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{A49BFC24-9286-49C3-9304-21FC0750A1DA}C:\program files\unity 5\unity\editor\unity.exe] => (Allow) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [UDP Query User{B3EDA260-403F-428A-A8B9-B5762318613D}C:\program files\unity 5\unity\editor\unity.exe] => (Allow) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [{9FC5CAC6-6A24-4340-85AF-9B8620A4E552}] => (Block) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [{7C4DEE34-41D9-4C38-B29B-A54F75A853AB}] => (Block) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [TCP Query User{854AD037-515D-4925-96DC-1AF287E7C42B}C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe] => (Allow) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [UDP Query User{D8EC7D10-43E7-4BC2-B202-3CA1FF1E8950}C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe] => (Allow) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{03B02D1A-6516-46D2-960D-452EC55DCBF3}] => (Block) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{2A9E7B31-8490-426A-A6E9-FCCC572E6557}] => (Block) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{B4AFDC92-AA95-41B4-8257-B150514410FA}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{FF23AC4E-554B-4AA2-9E9A-5778B5A891E5}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{1EAA34F2-4342-4CD9-893A-1307A4F12A04}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [{50A8C8BE-7BBC-442E-A24D-898131A9B1D7}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [TCP Query User{EC3AE3A3-7D9A-4A24-8D07-781EA2C5AF3D}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [UDP Query User{9229B7E1-BB80-4D3C-93E0-DC19562706F8}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{9D113644-2AC2-463B-925A-5D8955B6716B}] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{4DD836E9-2A23-4519-8B28-47FF1B608D07}] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{1EBFDC13-43FF-4939-9C24-F738E8D2DFFF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FBBADDCD-8B85-42A5-9977-CD685D11827B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E58493BE-881A-4D98-9E39-7E9F29C8366A}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{313285AD-26AB-4542-BD25-A04B23F389A7}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{64A382BA-47D7-4C03-93D9-9DFF6BAD8F24}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{8B089474-445E-4F28-A5B4-B0E92401E283}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{B0FC994D-1EB8-4F27-BE21-59537526801E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{EFAB1B06-094C-4AD0-B928-EF375946CC03}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe
FirewallRules: [{EFC62194-F61D-417B-A09C-166CD65856EF}] => (Allow) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/10/2015 04:37:25 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (08/10/2015 04:31:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: LogonUI.exe, Version: 6.3.9600.17415, Zeitstempel: 0x5450541b
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17736, Zeitstempel: 0x550f4336
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000003b179
ID des fehlerhaften Prozesses: 0x138c
Startzeit der fehlerhaften Anwendung: 0xLogonUI.exe0
Pfad der fehlerhaften Anwendung: LogonUI.exe1
Pfad des fehlerhaften Moduls: LogonUI.exe2
Berichtskennung: LogonUI.exe3
Vollständiger Name des fehlerhaften Pakets: LogonUI.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: LogonUI.exe5

Error: (08/10/2015 04:30:37 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4954

Error: (08/10/2015 04:30:37 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4954

Error: (08/10/2015 04:30:37 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/10/2015 04:30:35 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3360


Systemfehler:
=============
Error: (08/09/2015 10:26:50 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet:
%%1062

Error: (08/09/2015 05:19:10 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎09.‎08.‎2015 um 12:02:45 unerwartet heruntergefahren.

Error: (08/08/2015 07:57:34 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎08.‎08.‎2015 um 19:54:40 unerwartet heruntergefahren.

Error: (08/08/2015 07:53:32 PM) (Source: DCOM) (EventID: 10010) (User: ARBEITSRECHNER)
Description: {5C65F4B0-3651-4514-B207-D10CB699B14B}

Error: (08/08/2015 07:53:02 PM) (Source: DCOM) (EventID: 10010) (User: ARBEITSRECHNER)
Description: {5C65F4B0-3651-4514-B207-D10CB699B14B}

Error: (08/08/2015 07:52:27 PM) (Source: DCOM) (EventID: 10010) (User: ARBEITSRECHNER)
Description: {5C65F4B0-3651-4514-B207-D10CB699B14B}

Error: (08/07/2015 12:36:05 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎07.‎08.‎2015 um 11:03:24 unerwartet heruntergefahren.

Error: (08/06/2015 08:51:47 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070002 fehlgeschlagen: Microsoft.Reader

Error: (08/06/2015 08:51:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070002 fehlgeschlagen: Microsoft.ZuneVideo

Error: (08/06/2015 08:39:23 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎06.‎08.‎2015 um 20:38:12 unerwartet heruntergefahren.


Microsoft Office:
=========================
Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/10/2015 04:53:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/10/2015 04:37:25 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (08/10/2015 04:31:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: LogonUI.exe6.3.9600.174155450541bntdll.dll6.3.9600.17736550f4336c0000005000000000003b179138c01d0d379152bb6abC:\Windows\system32\LogonUI.exeC:\Windows\SYSTEM32\ntdll.dll79cb3c19-3f6c-11e5-8014-a4db3080e4a1

Error: (08/10/2015 04:30:37 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4954

Error: (08/10/2015 04:30:37 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4954

Error: (08/10/2015 04:30:37 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/10/2015 04:30:35 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3360


CodeIntegrity:
===================================
  Date: 2015-08-10 16:06:04.164
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-10 16:06:02.149
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-10 16:05:59.777
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:56.369
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:54.362
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:51.817
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:10.881
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:04.691
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 14:09:10.418
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 14:09:08.762
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Speicherinformationen ===========================

Processor: AMD E1-2500 APU with Radeon(TM) HD Graphics
Prozentuale Nutzung des RAM: 38%
Installierter physikalischer RAM: 3525.01 MB
Verfügbarer physikalischer RAM: 2180.29 MB
Summe virtueller Speicher: 7109.01 MB
Verfügbarer virtueller Speicher: 5650.45 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:444.6 GB) (Free:220.79 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D5A694CC)

Partition: GPT.

==================== Ende von log ============================

--- --- ---

schrauber 11.08.2015 09:32

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

Wandalensalz 11.08.2015 19:57

mbam.txt:

Code:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlaufdatum: 11.08.2015
Suchlaufzeit: 18:26
Protokolldatei: mbam.txt
Administrator: Ja

Version: 2.1.8.1057
Malware-Datenbank: v2015.08.11.06
Rootkit-Datenbank: v2015.08.06.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: hendrik_2002

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 674433
Abgelaufene Zeit: 1 Std., 44 Min., 18 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Dateien: 1
PUP.Optional.PCMechanic, C:\Users\hendr_000\Downloads\pcmechanicpm.exe, , [375bc1468b00c3732e442c9a0ef3d729],

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)


ADWCleaner.txt:

AdwCleaner Logfile:
Code:

# AdwCleaner v4.201 - Bericht erstellt 11/08/2015 um 20:21:45
# Aktualisiert 08/04/2015 von Xplode
# Datenbank : 2015-08-11.1 [Server]
# Betriebssystem : Windows 8.1  (x64)
# Benutzername : hendrik_2002 - ARBEITSRECHNER
# Gestarted von : C:\Users\hendr_000\Desktop\adwcleaner_4.201.exe
# Option : Löschen

***** [ Dienste ] *****

Dienst Gelöscht : swdumon

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ftb
Ordner Gelöscht : C:\Users\hendr_000\AppData\Local\slimware utilities inc
Ordner Gelöscht : C:\Users\hendr_000\AppData\Roaming\Solvusoft
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Windows\System32\drivers\swdumon.sys
Datei Gelöscht : C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\2famRptk.default\user.js
Datei Gelöscht : C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\user.js

***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ChromaticHTM
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\SlimWare Utilities Inc
Schlüssel Gelöscht : HKLM\SOFTWARE\Uniblue
Schlüssel Gelöscht : HKLM\SOFTWARE\SecurityUtility
Schlüssel Gelöscht : HKLM\SOFTWARE\SlimWare Utilities Inc
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FAD0F79E-5EA4-542B-76A3-46093E52C1F5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\SecurityUtility

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Mozilla Firefox v36.0 (x86 de)


-\\ Google Chrome v44.0.2403.130


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [14361 Bytes] - [02/04/2014 09:03:53]
AdwCleaner[R10].txt - [2522 Bytes] - [22/04/2015 16:37:13]
AdwCleaner[R11].txt - [2299 Bytes] - [31/05/2015 08:49:31]
AdwCleaner[R12].txt - [2359 Bytes] - [31/05/2015 08:53:03]
AdwCleaner[R13].txt - [2290 Bytes] - [13/06/2015 10:04:20]
AdwCleaner[R14].txt - [4124 Bytes] - [11/08/2015 20:21:19]
AdwCleaner[R1].txt - [19934 Bytes] - [27/01/2015 19:31:34]
AdwCleaner[R2].txt - [1050 Bytes] - [30/01/2015 14:48:34]
AdwCleaner[R3].txt - [2028 Bytes] - [08/02/2015 10:26:18]
AdwCleaner[R4].txt - [1891 Bytes] - [12/02/2015 11:06:10]
AdwCleaner[R5].txt - [1456 Bytes] - [16/02/2015 15:21:28]
AdwCleaner[R6].txt - [1515 Bytes] - [16/02/2015 15:28:33]
AdwCleaner[R7].txt - [1978 Bytes] - [06/03/2015 21:32:13]
AdwCleaner[R8].txt - [1774 Bytes] - [07/03/2015 19:27:03]
AdwCleaner[R9].txt - [25450 Bytes] - [09/04/2015 11:49:10]
AdwCleaner[S0].txt - [11202 Bytes] - [02/04/2014 09:05:15]
AdwCleaner[S10].txt - [3392 Bytes] - [11/08/2015 20:21:45]
AdwCleaner[S1].txt - [17070 Bytes] - [27/01/2015 19:38:50]
AdwCleaner[S2].txt - [1965 Bytes] - [12/02/2015 11:15:26]
AdwCleaner[S3].txt - [1530 Bytes] - [16/02/2015 15:33:08]
AdwCleaner[S4].txt - [1997 Bytes] - [06/03/2015 21:37:18]
AdwCleaner[S5].txt - [1839 Bytes] - [07/03/2015 19:36:47]
AdwCleaner[S6].txt - [3828 Bytes] - [09/04/2015 12:07:25]
AdwCleaner[S7].txt - [2453 Bytes] - [22/04/2015 16:39:41]
AdwCleaner[S8].txt - [2417 Bytes] - [31/05/2015 08:54:53]
AdwCleaner[S9].txt - [2306 Bytes] - [13/06/2015 10:22:34]

########## EOF - C:\AdwCleaner\AdwCleaner[S10].txt - [3984  Bytes] ##########

--- --- ---

[/CODE]

JRT.txt:

JRT Logfile:
Code:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.5.5 (08.05.2015:1)
OS: Windows 8.1 x64
Ran by hendrik_2002 on 11.08.2015 at 20:33:14,87
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks

Successfully deleted: [Task] C:\Windows\system32\tasks\Uninstaller_SkipUac_hendrik_2002
Successfully deleted: [Task] C:\Windows\Tasks\Uninstaller_SkipUac_hendrik_2002.job



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer



~~~ Files



~~~ Folders

Successfully deleted: [Folder] C:\ProgramData\productdata
Successfully deleted: [Folder] C:\Users\hendr_000\Appdata\Local\icsharpcode.net
Successfully deleted: [Folder] C:\Users\hendr_000\AppData\Roaming\goldengate
Successfully deleted: [Folder] C:\Users\hendr_000\AppData\Roaming\productdata
Successfully deleted: [Folder] C:\users\Public\Documents\downloaded installers
Successfully deleted: [Folder] C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8
Successfully deleted: [Folder] C:\Users\hendr_000\Appdata\Local\14405



~~~ FireFox

Successfully deleted: [Folder] C:\Users\hendr_000\AppData\Roaming\mozilla\firefox\profiles\a42jhbp7.default-1396422616735\extensions\iobitascsurfingprotection@iobit.com
Emptied folder: C:\Users\hendr_000\AppData\Roaming\mozilla\firefox\profiles\a42jhbp7.default-1396422616735\minidumps [2 files]



~~~ Chrome


[C:\Users\hendr_000\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\hendr_000\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\hendr_000\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\hendr_000\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11.08.2015 at 20:42:06,51
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

--- --- ---

FRST.txt:

Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:11-08-2015
durchgeführt von hendrik_2002 (Administrator) auf ARBEITSRECHNER (11-08-2015 20:46:55)
Gestartet von C:\Users\hendr_000\Desktop
Geladene Profile: hendrik_2002 (Verfügbare Profile: hendrik_2002 & Dirk & Niklas Steinmetz & Administrator)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Mister Group) C:\Program Files (x86)\System Explorer\SystemExplorer.exe
(Mister Group) C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKLM-x32\...\Run: [iFreeUp] => C:\Program Files (x86)\IObit\iFreeUp\iFreeUpMini.exe [470304 2015-03-31] (IObit)
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit)
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Keine Datei

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.msn.com/de-de/?pc=UP97&ocid=UP97DHP
hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPF4C30013-DBA8-4203-9422-5B83732DCF2E&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> {36A2063E-A8A8-41E0-B063-C2945B3B3AA1} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-21] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-21] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0186D2C8-01F4-4F66-A6D2-3A87F13D817A}: [DhcpNameServer] 192.168.1.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735
FF SelectedSearchEngine: Yahoo!
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-20] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-21] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-20] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-01-26] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-532561150-3242956754-1626305917-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-06-20] ()
FF Extension: Kein Name - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-05-27]
FF Extension: Kein Name - C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\extensions\amazon-icon@giga.de [nicht gefunden]
FF Extension: Kein Name - C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\extensions\iobitascsurfingprotection@iobit.com [nicht gefunden]
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Firefox Developer Edition\firefox.exe

Chrome:
=======
CHR Profile: C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-06-06]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Adblock Pro) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2015-06-06]
CHR Extension: (uMatrix) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfcmafjalglgifnmanfmnieipoejdcf [2015-04-20]
CHR Extension: (Chrome Apps & Extensions Developer Tool) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohmmkhmmmpcnpikjeljgnaoabkaalbgc [2015-06-06]
CHR HKU\S-1-5-21-532561150-3242956754-1626305917-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fkkcgfbgohboipdhliafmacjnhjbhmim] - https://clients2.google.com/service/update2/crx

Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-532561150-3242956754-1626305917-1001) OperaStable - "C:\Users\hendr_000\AppData\Local\Programs\Opera\Launcher.exe"

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2015-02-04] (Adobe Systems) [Datei ist nicht signiert]
S2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [814880 2015-04-03] (IObit)
S4 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-03-17] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S4 Apache2.4; C:\xampp\apache\bin\httpd.exe [22016 2014-07-17] (Apache Software Foundation) [Datei ist nicht signiert]
S2 Bonjour Service; C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe [384512 2015-07-21] (Apple Inc.) [Datei ist nicht signiert]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
S4 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-27] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2753720 2015-07-01] (Microsoft Corporation)
S4 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2015\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) [Datei ist nicht signiert]
S2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21744 2015-07-09] (Microsoft Corporation)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-09] (IObit)
S4 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-03-30] (LogMeIn, Inc.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S4 metasploitPostgreSQL; C:\metasploit\postgresql\bin\pg_ctl.exe [76288 2015-03-04] (PostgreSQL Global Development Group) [Datei ist nicht signiert]
S4 metasploitProSvc; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 metasploitThin; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 metasploitWorker; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 mysql; C:\xampp\mysql\bin\mysqld.exe [10982912 2014-07-18] () [Datei ist nicht signiert]
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert]
S3 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2015-06-22] ()
S4 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
S4 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
R3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Mister Group)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [134656 2015-07-09] (Microsoft Corporation) [Datei ist nicht signiert]
S4 Tomcat7; C:\xampp\tomcat\bin\tomcat7.exe [80896 2013-07-02] (Apache Software Foundation) [Datei ist nicht signiert]
S4 vncserver; C:\Program Files\RealVNC\VNC Server\vncservice.exe [639808 2015-01-28] (RealVNC Ltd)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [52968 2015-07-07] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4265984 2014-12-11] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-12-21] (Advanced Micro Devices)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-04-15] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-03-30] (LogMeIn Inc.)
S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-08-19] (Riverbed Technology, Inc.)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-07-09] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [146072 2015-07-09] (Oracle Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [76480 2015-05-21] (VMware, Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 cpuz137; \??\C:\Users\HENDR_~1\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-11 20:46 - 2015-08-11 20:47 - 00016402 _____ C:\Users\hendr_000\Desktop\FRST.txt
2015-08-11 20:46 - 2015-08-11 20:46 - 02172416 _____ (Farbar) C:\Users\hendr_000\Desktop\FRST64.exe
2015-08-11 20:46 - 2015-08-11 20:46 - 00000000 ____D C:\Users\hendr_000\Desktop\FRST-OlderVersion
2015-08-11 20:33 - 2015-08-11 20:32 - 01797896 _____ (Malwarebytes Corporation) C:\Users\hendr_000\Desktop\JRT.exe
2015-08-11 20:32 - 2015-08-11 20:32 - 01797896 _____ (Malwarebytes Corporation) C:\Users\hendr_000\Downloads\JRT.exe
2015-08-11 18:25 - 2015-08-11 18:25 - 00001078 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-11 18:25 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-11 18:25 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-11 18:25 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-10 15:57 - 2015-08-10 15:57 - 00000000 ____D C:\Users\hendr_000\Downloads\metasploitable-linux-2.0.0
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Xamarin
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\ProgramData\MonoTouch
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\ProgramData\Mono for Android
2015-08-09 22:25 - 2015-08-09 22:25 - 00001894 _____ C:\Users\hendr_000\Desktop\VS 2015.lnk
2015-08-09 22:14 - 2015-08-11 20:23 - 00017114 _____ C:\Windows\PFRO.log
2015-08-09 21:59 - 2015-08-10 16:14 - 00000000 ____D C:\Users\hendr_000\Documents\Visual Studio 2015
2015-08-09 21:55 - 2015-08-09 21:55 - 00000000 ____D C:\Program Files (x86)\Xamarin
2015-08-09 21:54 - 2015-08-09 21:55 - 00000000 ____D C:\ProgramData\Monodoc
2015-08-09 20:42 - 2015-08-09 20:42 - 00000000 ____D C:\Program Files\Application Verifier
2015-08-09 20:42 - 2015-08-09 20:42 - 00000000 ____D C:\Program Files (x86)\Application Verifier
2015-08-09 20:41 - 2015-08-09 20:41 - 00000000 ____D C:\ProgramData\Windows App Certification Kit
2015-08-09 20:27 - 2015-08-09 20:27 - 00000000 ____D C:\Program Files (x86)\AppInsights
2015-08-09 20:26 - 2015-08-09 20:26 - 00000000 ____D C:\ProgramData\NuGet
2015-08-09 20:26 - 2015-08-09 20:26 - 00000000 ____D C:\Program Files (x86)\NuGet
2015-08-09 19:56 - 2015-08-09 19:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools
2015-08-09 19:54 - 2015-08-09 19:54 - 00000000 ____D C:\Program Files (x86)\Android
2015-08-09 19:50 - 2015-08-09 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2015-08-09 19:43 - 2015-08-09 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Deutsch
2015-08-09 19:39 - 2015-08-09 19:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-08-09 19:30 - 2015-08-09 20:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2015-08-09 19:29 - 2015-08-09 19:29 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2015-08-09 19:28 - 2015-08-09 19:28 - 00000000 ____D C:\Program Files (x86)\ShellDir
2015-08-09 19:21 - 2015-08-09 19:21 - 00000000 ____D C:\ProgramData\Microsoft DNX
2015-08-09 19:21 - 2015-08-09 19:21 - 00000000 ____D C:\Program Files\Microsoft DNX
2015-08-09 19:08 - 2015-08-09 19:16 - 00000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2015-08-09 19:08 - 2015-08-09 19:08 - 00000000 ____D C:\Users\Administrator\Documents\ManageYourLife 1.0.0
2015-08-09 19:05 - 2015-08-09 19:05 - 00000000 ____D C:\Program Files\IIS Express
2015-08-09 19:05 - 2015-08-09 19:05 - 00000000 ____D C:\Program Files (x86)\IIS Express
2015-08-09 19:03 - 2015-08-09 19:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools
2015-08-09 19:01 - 2015-08-09 19:01 - 00000000 ____D C:\Program Files (x86)\Microsoft WCF Data Services
2015-08-09 18:58 - 2015-08-09 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression
2015-08-09 18:56 - 2015-08-09 18:56 - 00001536 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk
2015-08-09 18:53 - 2015-08-09 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2015-08-09 18:53 - 2015-08-09 18:53 - 00000000 ____D C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-08-09 18:52 - 2015-08-09 19:50 - 00000000 ____D C:\Program Files (x86)\Windows Phone Kits
2015-08-09 18:52 - 2015-08-09 19:48 - 00000000 ____D C:\Program Files (x86)\Microsoft XDE
2015-08-09 18:48 - 2015-08-09 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2015-08-09 18:40 - 2015-08-09 18:40 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 12.0
2015-08-09 18:40 - 2015-08-09 18:40 - 00000000 ____D C:\Program Files (x86)\HTML Help Workshop
2015-08-09 18:30 - 2015-08-09 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2015-08-09 18:27 - 2015-08-09 18:27 - 00000000 ____D C:\Windows\symbols
2015-08-09 18:22 - 2015-08-09 19:40 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-08-09 18:22 - 2015-08-09 18:35 - 00000000 ____D C:\Windows\SysWOW64\1031
2015-08-09 18:22 - 2015-08-09 18:26 - 00000000 ____D C:\Windows\system32\1033
2015-08-09 18:22 - 2015-08-09 18:22 - 00001537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk
2015-08-09 18:22 - 2015-08-09 18:22 - 00000000 ____D C:\Windows\SysWOW64\1033
2015-08-09 18:12 - 2015-08-11 20:24 - 00001330 _____ C:\Windows\setupact.log
2015-08-09 18:12 - 2015-08-09 21:48 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-08-09 18:12 - 2015-08-09 18:22 - 00000000 ____D C:\Windows\system32\1031
2015-08-09 18:12 - 2015-08-09 18:12 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 14.0
2015-08-09 18:12 - 2015-08-09 18:12 - 00000000 _____ C:\Windows\setuperr.log
2015-08-09 17:57 - 2015-06-22 08:31 - 00027840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-08-09 17:56 - 2015-06-22 08:30 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-08-09 17:54 - 2015-08-09 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iFreeUp
2015-08-09 17:47 - 2015-08-09 17:47 - 64294912 _____ C:\Windows\system32\config\COMPONENTS.iobit
2015-08-09 17:47 - 2015-08-09 17:47 - 05189632 _____ C:\Windows\system32\config\DRIVERS.iobit
2015-08-09 17:32 - 2015-06-04 15:28 - 00961192 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00062304 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00064352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-08-09 17:24 - 2015-08-09 17:43 - 873116238 _____ C:\Users\hendr_000\Downloads\metasploitable-linux-2.0.0.zip
2015-08-09 17:23 - 2015-08-10 15:46 - 00000000 ____D C:\ProgramData\VsTelemetry
2015-08-09 17:23 - 2015-08-09 17:23 - 03099760 _____ (Microsoft Corporation) C:\Users\hendr_000\Downloads\vs_community.exe
2015-08-08 19:48 - 2015-08-08 19:48 - 00000000 ____D C:\Program Files\Registrar Registry Manager
2015-08-08 19:45 - 2015-08-08 19:45 - 05032752 _____ (Resplendence Software Projects Sp. ) C:\Users\hendr_000\Downloads\RegistrarHomeV7.exe
2015-08-08 18:39 - 2015-08-09 19:24 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-08-08 18:39 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-08 18:39 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-08 18:39 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-08 18:39 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-08-08 18:39 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-08 18:39 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-08 18:39 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-08 18:39 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-08 18:39 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-08 18:39 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-08 18:38 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-08 18:38 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-07 17:20 - 2015-08-07 17:20 - 00052736 _____ C:\Users\hendr_000\Desktop\CopyBootLog.exe
2015-08-07 15:41 - 2015-08-07 15:41 - 00000000 ____D C:\Users\hendr_000\Downloads\geek_13346
2015-08-07 14:07 - 2015-08-07 14:07 - 00000000 ____D C:\Users\hendr_000\Downloads\gcc-5.1.0
2015-08-06 19:46 - 2015-08-06 20:38 - 00075139 _____ C:\Users\hendr_000\Desktop\Storereparatur.log
2015-08-06 18:26 - 2015-08-06 18:26 - 00000000 ____D C:\RefreshImage
2015-08-02 14:06 - 2015-08-02 14:07 - 07407166 _____ C:\Users\hendr_000\Downloads\AdventureMap ZeFlu.zip
2015-08-01 11:12 - 2015-08-01 11:12 - 00000440 _____ C:\Users\hendr_000\Downloads\App-Fix.zip
2015-08-01 11:00 - 2015-08-01 11:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-08-01 10:59 - 2015-08-01 10:59 - 00000000 ____D C:\Program Files\Realtek
2015-08-01 10:58 - 2000-01-01 02:00 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2015-08-01 10:58 - 2000-01-01 02:00 - 04460760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-08-01 10:58 - 2000-01-01 02:00 - 03262184 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02907864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-08-01 10:58 - 2000-01-01 02:00 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01413776 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01104040 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00943784 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00856992 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00837776 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00734376 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00654480 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00544400 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2015-08-01 10:58 - 2000-01-01 02:00 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00454288 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00435344 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00369296 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00329360 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00329360 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00250536 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00213432 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 72113152 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-08-01 10:57 - 2000-01-01 02:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 05706688 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 03218800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02847448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02532056 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02036495 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-08-01 10:57 - 2000-01-01 02:00 - 01739992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00168816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 12975360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 12834736 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 05234952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 02789808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01499984 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01365768 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00995120 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00979280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 07087448 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 06242576 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 03182104 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01933584 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01559744 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00336144 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00328816 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00284944 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00096568 _____ C:\Windows\system32\audioLibVc.dll
2015-08-01 10:54 - 2000-01-01 02:00 - 00560328 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-08-01 10:54 - 2000-01-01 02:00 - 00109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-07-31 17:00 - 2015-07-31 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-07-31 16:59 - 2015-08-01 10:52 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Raptr
2015-07-31 16:59 - 2015-07-31 17:00 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-07-31 16:49 - 2015-07-31 16:51 - 00192816 _____ C:\Users\hendr_000\Downloads\raptr_installer.exe
2015-07-31 14:18 - 2015-08-06 19:03 - 00004270 _____ C:\Users\hendr_000\Desktop\FixMetro.cmd
2015-07-31 10:17 - 2015-07-31 10:17 - 00000308 _____ C:\Users\hendr_000\Desktop\MetroTwit.appref-ms
2015-07-31 10:17 - 2015-07-31 10:17 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pixel Tucker Pty Ltd
2015-07-30 19:07 - 2015-07-30 20:49 - 2147484783 _____ C:\Users\hendr_000\Downloads\kali-linux-1.1.0a-i386.iso
2015-07-29 20:55 - 2015-07-29 20:58 - 19302676 _____ C:\Users\hendr_000\Downloads\CommunityShowcaseNaturalLandscapes3.themepack
2015-07-29 20:48 - 2015-07-29 20:48 - 00536906 _____ C:\Users\hendr_000\Downloads\apps.diagcab
2015-07-29 20:48 - 2015-07-29 20:48 - 00423962 _____ C:\Users\hendr_000\Downloads\AppsDiagnostic.diagcab
2015-07-29 17:25 - 2013-06-18 15:12 - 00090304 _____ (Sysinternals) C:\Windows\system32\strings.exe
2015-07-29 17:24 - 2013-06-18 15:12 - 00090304 _____ (Sysinternals) C:\Users\hendr_000\Downloads\strings.exe
2015-07-29 17:23 - 2015-07-29 17:23 - 00050298 _____ C:\Users\hendr_000\Downloads\Strings.zip
2015-07-29 17:13 - 2015-07-29 17:13 - 00000000 ____D C:\Users\hendr_000\AppData\Local\GWX
2015-07-29 17:12 - 2015-07-29 17:12 - 00000000 ____D C:\Users\hendr_000\Downloads\win10fix_full_german.bat_
2015-07-29 17:11 - 2015-07-29 17:11 - 00002929 _____ C:\Users\hendr_000\Downloads\win10fix_full_german.bat_.zip
2015-07-29 16:55 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-07-29 16:55 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-07-29 16:54 - 2015-06-09 20:27 - 00411133 _____ C:\Windows\system32\ApnDatabase.xml
2015-07-29 16:53 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-07-29 16:53 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-07-29 16:53 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-07-29 16:52 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-07-29 16:52 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-07-29 16:52 - 2015-06-10 00:39 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-07-29 16:52 - 2015-06-10 00:39 - 00053248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-07-29 16:52 - 2015-06-10 00:38 - 01201664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-07-28 16:43 - 2015-07-28 16:43 - 00001011 _____ C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk
2015-07-28 16:43 - 2015-07-28 16:43 - 00000981 _____ C:\Users\hendr_000\Desktop\FastCopy.lnk
2015-07-28 16:43 - 2015-07-28 16:43 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\FastCopy
2015-07-28 16:43 - 2015-07-28 16:43 - 00000000 ____D C:\Program Files\FastCopy
2015-07-27 18:36 - 2015-07-27 18:37 - 04954736 _____ (Microsoft Corporation) C:\Users\hendr_000\Downloads\WindowsSetupBox.exe
2015-07-27 18:10 - 2015-07-27 18:10 - 00060965 _____ C:\Users\hendr_000\Downloads\pkeyuibx_v1.5.0.zip
2015-07-27 18:08 - 2015-07-27 18:08 - 01198368 _____ C:\Users\hendr_000\Downloads\Windows Product Key Viewer - CHIP-Installer.exe
2015-07-27 18:02 - 2015-07-27 18:02 - 01198368 _____ C:\Users\hendr_000\Downloads\Windows 8 1 Setup Tool - CHIP-Installer.exe
2015-07-26 17:15 - 2015-07-26 17:15 - 00000000 ____D C:\Users\hendr_000\Downloads\rawwritewin-0.7
2015-07-26 16:33 - 2015-07-26 16:33 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-07-26 16:30 - 2015-07-26 17:14 - 00000000 ____D C:\Users\hendr_000\Desktop\ownOS
2015-07-26 16:27 - 2015-07-26 16:27 - 00214786 _____ C:\Users\hendr_000\Downloads\rawwritewin-0.7.zip
2015-07-26 16:27 - 2015-07-26 16:27 - 00000000 ____D C:\rawrite
2015-07-26 16:24 - 2015-07-26 16:25 - 00000000 ____D C:\NASM 2.11.08
2015-07-26 16:23 - 2015-07-26 16:23 - 00802892 _____ C:\Users\hendr_000\Downloads\nasm-2.11.08-installer.exe
2015-07-26 16:21 - 2015-07-26 16:22 - 01398894 _____ C:\Users\hendr_000\Downloads\nasm-2.11.08.zip
2015-07-25 21:07 - 2015-07-25 21:41 - 00428047 _____ C:\Users\hendr_000\Desktop\FastCopy211_x64.zip
2015-07-25 21:07 - 2015-07-25 21:07 - 00427277 _____ C:\Windows\SysWOW64\FastCopy211_x64.zip
2015-07-25 21:05 - 2015-07-25 21:05 - 00516664 _____ ( ) C:\Users\hendr_000\Downloads\FastCopy211_x64_CB-DL-Manager.exe
2015-07-25 16:55 - 2015-07-25 16:55 - 00000000 _____ C:\Windows\SysWOW64\InstallLocation
2015-07-24 14:03 - 2015-07-24 14:03 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Steam
2015-07-24 14:03 - 2015-07-24 14:03 - 00000000 ____D C:\Users\hendr_000\AppData\Local\CEF
2015-07-23 19:02 - 2015-07-31 10:26 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-23 19:02 - 2015-07-23 19:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-23 19:00 - 2015-07-23 19:01 - 01476720 _____ C:\Users\hendr_000\Downloads\SteamSetup.exe
2015-07-23 18:25 - 2015-07-23 18:35 - 606076928 _____ C:\Users\hendr_000\Downloads\ubuntu-14.04.2-server-i386.iso
2015-07-23 18:21 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-23 18:10 - 2015-07-23 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2015-07-23 18:10 - 2015-07-23 18:10 - 00000000 ____D C:\Program Files\Oracle
2015-07-23 18:10 - 2015-07-09 12:09 - 00958736 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2015-07-23 18:10 - 2015-07-09 12:09 - 00138904 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2015-07-21 14:11 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-21 14:10 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-21 14:10 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-21 14:10 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-21 14:10 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-21 14:10 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-21 14:10 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-21 14:09 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-21 14:09 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-21 14:09 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-21 14:09 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-21 14:09 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-21 14:09 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-21 14:09 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-21 14:09 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-21 14:09 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-21 14:09 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-21 14:09 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-21 14:09 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-21 14:09 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-21 14:07 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-21 14:07 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-21 14:07 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-21 14:07 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-21 14:07 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-21 14:07 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-21 14:07 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-21 12:56 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-21 12:56 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-21 12:55 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-21 12:55 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-21 12:53 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-21 12:52 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-21 12:52 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-21 12:52 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-21 12:52 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-21 12:52 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-21 12:51 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-21 12:51 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-21 12:51 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-21 12:51 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-21 12:51 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-21 12:51 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-21 12:51 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-21 12:51 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-21 12:51 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-21 12:51 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-21 12:51 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-21 12:51 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-21 12:51 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-21 12:51 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-21 12:51 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-21 12:51 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-21 12:51 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-21 12:51 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-21 12:51 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-21 12:51 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-21 12:51 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-21 12:51 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-21 12:51 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-21 12:51 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-21 12:51 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-21 12:51 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-21 12:51 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-21 12:51 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-21 12:51 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-21 12:51 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-21 12:51 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-21 12:51 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-21 12:51 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-21 12:48 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-21 12:48 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-21 12:48 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-21 12:48 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-21 12:47 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-21 12:22 - 2015-07-21 12:45 - 00000000 ____D C:\Users\hendr_000\AppData\Local\ftblauncher
2015-07-21 12:22 - 2015-07-21 12:37 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\ftblauncher
2015-07-21 12:20 - 2015-07-21 12:21 - 06628862 _____ () C:\Users\hendr_000\Downloads\FTB_Launcher.exe

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-11 20:47 - 2015-06-07 17:02 - 00000000 ____D C:\FRST
2015-08-11 20:46 - 2015-05-30 06:36 - 01591694 _____ C:\Windows\WindowsUpdate.log
2015-08-11 20:46 - 2015-04-08 14:50 - 00005188 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for ARBEITSRECHNER-hendrik_2002 Arbeitsrechner
2015-08-11 20:46 - 2014-01-25 17:44 - 00000000 ___DO C:\Users\hendr_000\SkyDrive
2015-08-11 20:39 - 2014-01-27 17:50 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-11 20:30 - 2014-01-25 17:33 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-532561150-3242956754-1626305917-1001
2015-08-11 20:25 - 2015-01-29 19:14 - 00000000 ____D C:\ProgramData\VMware
2015-08-11 20:24 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-11 20:23 - 2014-02-23 22:06 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2015-08-11 20:22 - 2014-04-02 09:03 - 00000000 ____D C:\AdwCleaner
2015-08-11 20:13 - 2014-09-06 11:25 - 00000000 ____D C:\Users\Administrator
2015-08-11 20:13 - 2014-08-24 11:19 - 00000000 ____D C:\Users\Niklas Steinmetz.HendriksPodpal
2015-08-11 20:13 - 2014-02-23 22:13 - 00000000 ____D C:\Users\Dirk
2015-08-11 20:13 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Resources
2015-08-11 20:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-11 18:26 - 2015-06-06 13:31 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-11 18:25 - 2015-06-06 13:30 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-10 18:36 - 2014-06-21 18:57 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\.minecraft
2015-08-10 18:36 - 2014-02-23 22:13 - 00000000 ____D C:\Users\hendr_000
2015-08-10 18:05 - 2015-06-24 19:06 - 00057216 _____ C:\Users\hendr_000\Desktop\loaded_drivers.txt
2015-08-10 16:11 - 2015-01-29 19:22 - 00000000 ____D C:\Users\hendr_000\AppData\Local\VMware
2015-08-10 16:05 - 2015-01-29 19:22 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\VMware
2015-08-09 22:14 - 2013-08-22 16:44 - 00396520 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-09 22:10 - 2015-06-30 10:08 - 00000286 _____ C:\Windows\Tasks\ASC8_SkipUac_hendrik_2002.job
2015-08-09 21:54 - 2014-02-23 21:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-09 21:52 - 2015-01-21 12:40 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-09 21:43 - 2014-12-06 13:11 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2015-08-09 21:22 - 2014-03-07 20:13 - 00000000 ____D C:\Users\hendr_000\.android
2015-08-09 19:40 - 2015-05-12 17:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-08-09 19:40 - 2014-12-06 13:23 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-08-09 19:38 - 2015-05-12 17:44 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2015-08-09 19:05 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-09 18:53 - 2015-05-12 17:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-08-09 18:47 - 2015-05-12 17:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-08-09 18:27 - 2015-05-12 17:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer
2015-08-09 18:14 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-09 18:03 - 2015-03-09 20:30 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Eclipse
2015-08-09 17:53 - 2015-02-04 18:04 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\IObit
2015-08-09 17:53 - 2015-02-04 18:03 - 00000000 ____D C:\Program Files (x86)\IObit
2015-08-09 17:50 - 2015-01-30 12:12 - 00000000 ____D C:\Users\hendr_000\VirtualBox VMs
2015-08-09 17:50 - 2015-01-30 12:11 - 00000000 ____D C:\Users\hendr_000\.VirtualBox
2015-08-09 17:47 - 2014-02-06 21:33 - 00246272 ___SH C:\Users\hendr_000\Desktop\Thumbs.db
2015-08-09 17:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF
2015-08-08 20:08 - 2015-04-07 08:46 - 00000000 ____D C:\Users\hendr_000\workspace_projects
2015-08-08 19:58 - 2014-12-10 21:15 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-08 19:58 - 2014-07-31 18:06 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-08 19:55 - 2014-02-09 10:06 - 00000000 ____D C:\Users\hendr_000\AppData\Local\CrashDumps
2015-08-07 18:28 - 2015-05-12 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2015-08-06 18:29 - 2014-02-23 22:13 - 00012102 _____ C:\Windows\diagerr.xml
2015-08-06 18:29 - 2014-02-23 22:13 - 00011231 _____ C:\Windows\diagwrn.xml
2015-08-05 20:13 - 2015-06-07 16:59 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-08-05 16:05 - 2015-06-06 13:56 - 00000000 ____D C:\ProgramData\HitmanPro
2015-08-02 19:14 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-08-01 11:02 - 2013-10-08 16:45 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-07-31 18:02 - 2014-02-23 22:06 - 00000000 ____D C:\AMD
2015-07-31 14:12 - 2014-07-27 17:04 - 00000000 ____D C:\Users\hendr_000\.eclipse
2015-07-31 10:28 - 2015-01-29 19:28 - 00000000 ____D C:\Users\hendr_000\Documents\Virtual Machines
2015-07-31 10:20 - 2014-03-22 10:15 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Deployment
2015-07-30 21:48 - 2013-08-22 15:25 - 00786432 ___SH C:\Windows\system32\config\BBI
2015-07-30 16:49 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-07-29 18:34 - 2014-01-25 17:39 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Apps\2.0
2015-07-26 16:34 - 2014-08-23 12:55 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Notepad++
2015-07-26 16:33 - 2014-08-23 12:55 - 00000000 ____D C:\Program Files (x86)\Notepad++
2015-07-25 21:05 - 2015-04-09 11:57 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-25 17:32 - 2014-01-25 17:00 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Packages
2015-07-24 16:28 - 2014-12-24 19:48 - 00000000 ____D C:\Program Files (x86)\Minecraft
2015-07-24 16:27 - 2015-01-14 12:48 - 00000000 ____D C:\Users\hendr_000\.gimp-2.8
2015-07-24 14:10 - 2015-02-04 18:03 - 00000000 ____D C:\ProgramData\IObit
2015-07-23 21:37 - 2015-04-09 11:57 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-07-23 20:17 - 2014-02-06 20:36 - 00000000 ____D C:\Windows\system32\MRT
2015-07-23 19:20 - 2014-02-11 19:35 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\FileZilla
2015-07-23 18:12 - 2015-06-09 16:53 - 00000000 ____D C:\Users\hendr_000\Downloads\forge
2015-07-23 18:11 - 2015-06-09 16:57 - 00000000 ____D C:\Users\hendr_000\Downloads\setups
2015-07-21 14:09 - 2014-01-25 17:21 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-07-21 14:08 - 2014-12-23 17:32 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-07-21 12:50 - 2014-03-29 20:01 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-21 12:50 - 2014-03-29 20:01 - 00003884 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-21 12:50 - 2014-03-29 20:01 - 00001148 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-21 12:50 - 2014-03-29 20:01 - 00001144 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-21 12:36 - 2014-01-25 17:34 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-07-21 12:28 - 2014-03-07 21:33 - 00000000 ____D C:\ProgramData\Oracle
2015-07-21 12:25 - 2014-12-24 21:28 - 00110688 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2015-07-21 12:25 - 2014-12-24 21:27 - 00000000 ____D C:\Program Files\Java
2015-07-13 23:10 - 2015-03-14 09:02 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2015-03-14 09:02 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-02-26 20:51 - 2015-02-26 20:51 - 0000000 ___RH () C:\Users\hendr_000\AppData\Roaming\b4d6e8f4ed70928182ebe608f6b39bab2
2015-05-15 12:12 - 2015-05-15 12:12 - 0000046 _____ () C:\Users\hendr_000\AppData\Roaming\Camdata.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0000408 _____ () C:\Users\hendr_000\AppData\Roaming\CamLayout.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0000408 _____ () C:\Users\hendr_000\AppData\Roaming\CamShapes.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0004536 _____ () C:\Users\hendr_000\AppData\Roaming\CamStudio.cfg
2014-09-01 10:18 - 2014-09-01 10:18 - 0002086 _____ () C:\Users\hendr_000\AppData\Roaming\UIZJU
2015-05-15 12:11 - 2015-05-15 12:11 - 0000096 _____ () C:\Users\hendr_000\AppData\Roaming\version2.xml
2014-03-07 21:43 - 2014-12-23 16:55 - 0000113 _____ () C:\Users\hendr_000\AppData\Roaming\WB.CFG
2014-12-08 18:03 - 2014-12-08 18:03 - 0202370 _____ () C:\Users\hendr_000\AppData\Local\debuggee.mdmp
2015-01-29 21:01 - 2015-07-01 11:23 - 0000600 _____ () C:\Users\hendr_000\AppData\Local\PUTTY.RND
2015-06-22 17:08 - 2015-06-22 17:08 - 0002836 _____ () C:\Users\hendr_000\AppData\Local\recently-used.xbel
2014-12-26 12:55 - 2015-04-18 07:59 - 0007595 _____ () C:\Users\hendr_000\AppData\Local\Resmon.ResmonCfg
2015-01-27 09:36 - 2015-01-27 09:36 - 0000000 _____ () C:\Users\hendr_000\AppData\Local\{A9E8EC64-9A12-4DF0-8909-6F0BE58BB854}
2015-03-22 17:22 - 2015-03-22 17:22 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip
2015-06-06 14:28 - 2015-06-06 14:28 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\Administrator\AppData\Local\Temp\borlndlm.dll
C:\Users\Dirk\AppData\Local\Temp\{9AB2D6BA-D314-4579-92EB-5166BD3BD792}-35.0.1916.153_chrome_installer.exe
C:\Users\hendr_000\AppData\Local\Temp\Quarantine.exe
C:\Users\hendr_000\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-08-06 17:13

==================== Ende von Ergebnis ============================


Wandalensalz 11.08.2015 19:58

Addition.txt:

Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:11-08-2015
durchgeführt von hendrik_2002 (2015-08-11 20:49:41)
Gestartet von C:\Users\hendr_000\Desktop
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-532561150-3242956754-1626305917-500 - Administrator - Enabled) => C:\Users\Administrator
Dirk (S-1-5-21-532561150-3242956754-1626305917-1004 - Administrator - Enabled) => C:\Users\Dirk
Dummy-Account (S-1-5-21-532561150-3242956754-1626305917-1013 - Limited - Enabled)
Gast (S-1-5-21-532561150-3242956754-1626305917-501 - Limited - Disabled)
Hendrik2002 (S-1-5-21-532561150-3242956754-1626305917-1017 - Administrator - Enabled)
hendrik_2002 (S-1-5-21-532561150-3242956754-1626305917-1001 - Administrator - Enabled) => C:\Users\hendr_000
HomeGroupUser$ (S-1-5-21-532561150-3242956754-1626305917-1006 - Limited - Enabled)
Katja (S-1-5-21-532561150-3242956754-1626305917-1009 - Administrator - Enabled)
Niklas Steinmetz (S-1-5-21-532561150-3242956754-1626305917-1008 - Limited - Enabled) => C:\Users\Niklas Steinmetz.HendriksPodpal

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

64 Bit HP CIO Components Installer (Version: 7.2.4 - Hewlett-Packard) Hidden
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated)
AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2022 - Acer Incorporated)
Adobe After Effects 7.0 (HKLM-x32\...\Adobe After Effects 7.0) (Version: 7.0.0.244 - Adobe Systems, Inc.)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\{F22C3C05-B1D9-47FF-AA17-4F9DCBFE850F}) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.194 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Premiere Pro 2.0 (HKLM-x32\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.)
Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.3.0 - IObit)
AMD Catalyst Install Manager (HKLM\...\{ACF4E7FE-650D-9BD7-BAE5-1AD061F40F69}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
Application Insights Tools for Visual Studio 2015 (x32 Version: 3.3.1 - Microsoft Corporation) Hidden
Ashampoo WinOptimizer 2015 v.11.00.50 (HKLM-x32\...\{4209F371-3276-A8F7-B851-845A83732AB4}_is1) (Version: 11.00.50 - Ashampoo GmbH & Co. KG)
Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft)
Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Bandicam (HKLM-x32\...\Bandicam) (Version: 2.1.2.740 - Bandisoft.com)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Windows Phone 8.0 (x32 Version: 3.0.30924.0 - Microsoft Corporation) Hidden
Blender (HKLM\...\Blender) (Version: 2.73a - Blender Foundation)
Borland C++Builder 6 (HKLM-x32\...\{2864C41B-EF2D-4640-95A2-526276524519}) (Version: 6.0 - Borland Software Corporation)
Brackets (HKLM-x32\...\{4BCC5124-095C-4871-8562-55FA29DD8773}) (Version: 1.1 - brackets.io)
Build Tools - amd64 (Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools - x86 (x32 Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools for Windows 10 (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Build Tools Language Resources - amd64 (Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools Language Resources - x86 (x32 Version: 12.0.31010 - Microsoft Corporation) Hidden
Buildtools für Windows 10 - DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated)
clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
CodedUITest81 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
CodedUITestUAP (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Craften Terminal 4.1.1 (HKLM-x32\...\{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1) (Version: 4.1.1 - Craften.de)
Crossfire Europe (HKLM-x32\...\Crossfire Europe) (Version: 1.172 - SG Europe)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Devenv-Ressourcen für Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Dotfuscator and Analytics Community Edition 5.18.1 (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
Dotfuscator and Analytics Community Edition Language Pack 5.18.1 de-DE (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
Entity Framework 6.1.3 Tools  for Visual Studio 2015 (HKLM-x32\...\{1A8A9739-BAD7-491F-B5B9-A79A2B965422}) (Version: 14.0.40302.0 - Microsoft Corporation)
Epic Games Launcher (HKLM\...\{84438A71-40ED-4E6F-9C7E-58FE0F61F692}) (Version: 1.1.28.0 - Epic Games, Inc.)
Erforderliche Komponenten für SSDT  (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation)
FileZilla (remove only) (HKLM-x32\...\FileZilla) (Version:  - )
FileZilla Client 3.10.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse)
Firefox Developer Edition 40.0a2 (x86 en-US) (HKLM-x32\...\Firefox Developer Edition 40.0a2 (x86 en-US)) (Version: 40.0a2 - Mozilla)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Pascal 2.6.4 (HKLM-x32\...\FreePascal_is1) (Version:  - Free Pascal Team)
Gemeinsam genutzte Microsoft Azure-Komponenten für Visual Studio 2015 Sprachpaket (DEU) - v1.5 (x32 Version: 1.5.30619.1602 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Git version 1.9.5-preview20150319 (HKLM-x32\...\Git_is1) (Version: 1.9.5-preview20150319 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version:  - EFD Software)
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.242 - SurfRight B.V.)
IDE Tools for Windows 10 (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated)
IDE-Tools für Windows 10 - DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
iFreeUp 1.0 (HKLM-x32\...\iFreeUp_is1) (Version: 1.0.10 - IObit)
IIS 10.0 Express (HKLM\...\{5984D8DA-C1AF-4284-9C88-D7150425B315}) (Version: 10.0.1734 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - )
Intellisense Lang Pack Mobile Extension SDK 10.0.10240.0 (x32 Version: 10.0.10240.0 - Microsoft Corporation) Hidden
Java 7 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417025F0}) (Version: 7.0.250 - Oracle)
Java 7 Update 75 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417075FF}) (Version: 7.0.750 - Oracle)
Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation)
Java SE Development Kit 7 Update 75 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170750}) (Version: 1.7.0.750 - Oracle)
Java SE Development Kit 8 Update 31 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180310}) (Version: 8.0.310.13 - Oracle Corporation)
Kits Configuration Installer (x32 Version: 10.0.26624 - Microsoft) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated)
LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden
LocalESPCui for de-de (x32 Version: 8.59.29989 - Microsoft) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden
Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Metasploit (HKLM-x32\...\Metasploit 4.11.1) (Version: 4.11.1 - Rapid7)
MetroTwit (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\6d9570ab26892611) (Version: 1.2.0.1 - Pixel Tucker Pty Ltd)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{B941AFB4-8851-33A1-9E72-0C33D463C41C}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4737.1003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\OneDriveSetup.exe) (Version: 17.3.5907.0716 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 DEU  (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - DEU (14.0.50616.0) (HKLM-x32\...\{FA604873-01A0-4834-AF87-418534E465BB}) (Version: 14.0.50616.0 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects  (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Transact-SQL ScriptDom  (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 T-SQL Language Service  (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 (HKLM-x32\...\{5c2b89b0-08cc-492f-b086-21e4d6ae7be4}) (Version: 14.0.23107.10 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation)
Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM\...\{63967E7E-5D53-42FA-A7B2-DC50FB0F976F}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM-x32\...\{2ADB6B9D-83C6-494E-B8AE-E815956A4670}) (Version: 12.0.2402.11 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{02BAAFC5-4E16-42E6-A9F6-8DDE0B7ED3B8}) (Version: 1.0.0.0 - Mojang)
Mit C# erstellte geräteübergreifende Hybrid-Apps - Vorlagen - DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 36.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0 (x86 de)) (Version: 36.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0 - Mozilla)
Mozilla Thunderbird 24.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.3.0 (x86 de)) (Version: 24.3.0 - Mozilla)
MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Nidhogg v1.0 (HKLM-x32\...\Nidhogg v1.01.0) (Version: 1.0 - Friends in War)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.9.2 - Notepad++ Team)
OEM Application Profile (HKLM-x32\...\{276FD4A2-030F-8A24-7DFE-9B1384131BCD}) (Version: 1.00.0000 - Ihr Firmenname)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer)
Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2008 - Acer)
Opera Stable 30.0.1835.59 (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Opera 30.0.1835.59) (Version: 30.0.1835.59 - Opera Software)
Oracle VM VirtualBox 5.0.0 (HKLM\...\{FCD0B365-2189-45F3-9AF2-2BCED86C121A}) (Version: 5.0.0 - Oracle Corporation)
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM-x32\...\{3F514FDC-F0F2-3B99-86D6-F7B3A2679B39}) (Version: 4.5.51209 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6 (Deutsch) (HKLM-x32\...\{7227EFF8-BC26-44D4-B91D-969A82DBDF4A}) (Version: 4.6.00081 - Microsoft Corporation)
PreEmptive Analytics Client German Language Pack (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation)
Projekt- und Elementvorlagen für Visual Studio Community 2015 – DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Projekt- und Elementvorlagen für Visual Studio Express 2015 für Windows 10 – DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Projekt- und Elementvorlagen für Visual Studio Professional 2015 – DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Python 3.4.3 (HKLM-x32\...\{CCD588A7-8D55-49F1-A30C-47FAB40889ED}) (Version: 3.4.16490 - Python Software Foundation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.224 - Qualcomm Atheros Communications)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.20 - Qualcomm Atheros Inc.)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.55 - Qualcomm Atheros)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7509 - Realtek Semiconductor Corp.)
Registrar Registry Manager 7.75 (HKLM\...\RegistrarHome_is1) (Version:  - Resplendence Software Projects Sp.)
Resource Hacker Version 4.0.0 (HKLM-x32\...\ResourceHacker_is1) (Version:  - )
Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Secunia PSI (3.0.0.10004) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.10004 - Secunia)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Silent Hunter 4 Wolves of the Pacific (HKLM-x32\...\{0D005F09-A5F4-473B-A901-5735C6AF5628}) (Version: 1.00.0000 - Ubisoft)
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
System Explorer 6.4.2 (HKLM-x32\...\{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1) (Version:  - Mister Group)
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
TIPP10 Version 2.1.0 (HKLM-x32\...\TIPP10_is1) (Version:  - (c) 2006-2011, Tom Thielicke IT Solutions)
TypeScript Power Tool (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0 (HKLM-x32\...\{4cde0c8c-47b3-448f-babf-fe5d392432a6}) (Version: 1.5.23128.0 - Microsoft Corporation)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
UltraUXThemePatcher (HKLM-x32\...\UltraUXThemePatcher) (Version: 2.5.6.0 - Manuel Hoefs (Zottel))
Unity (HKLM-x32\...\Unity) (Version: 5.0.1f1 - Unity Technologies ApS)
Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Visual C++ für Mobile-Entwicklung (Android-Unterstützung) (HKLM-x32\...\{fd8b6372-b8b3-4a14-bb21-fbc5cb94f7ac}) (Version: 14.0.23027.0 - Microsoft Corporation)
Visual C++ für Mobile-Entwicklung (iOS-Unterstützung) (HKLM-x32\...\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}) (Version: 14.0.23027.0 - Microsoft Corporation)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VMware Player (HKLM-x32\...\VMware_Player) (Version: 7.1.2 - VMware, Inc)
VMware Player (Version: 7.1.2 - VMware, Inc.) Hidden
VNC Server 5.2.3 (HKLM\...\{0D2201F0-2E7B-4C89-8C5D-03D3F5BB5042}) (Version: 5.2.3 - RealVNC Ltd)
VNC Viewer 5.2.3 (HKLM\...\{8824CB84-60DF-4CBC-AB3A-7C5AB2A41F31}) (Version: 5.2.3 - RealVNC Ltd)
WCF Data Services 5.6.4 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation)
Webocton - Scriptly 0.8.95.6 (HKLM-x32\...\Webocton - Scriptly_is1) (Version: 0.8.95.6 - Webocton)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.26624 (HKLM-x32\...\{e7a0c8b6-b0e9-41e2-8a0a-a6784f88d1d4}) (Version: 10.0.26624 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies)
WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Wireshark 1.12.3 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.12.3 - The Wireshark developer community, hxxp://www.wireshark.org)
Wise Registry Cleaner 8.61 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 8.61 - WiseCleaner.com, Inc.)
Xamarin (HKLM-x32\...\{B6F4249F-5053-43D5-BA37-D942230C825B}) (Version: 3.11.816.0 - Xamarin)
XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-5 - Bitnami)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Wiederherstellungspunkte =========================

09-08-2015 17:28:59 Microsoft Visual Studio Community 2015
09-08-2015 17:33:34 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
09-08-2015 17:37:30 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
09-08-2015 17:41:56 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026
09-08-2015 17:44:22 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
09-08-2015 17:47:02 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
09-08-2015 18:16:58 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026
09-08-2015 19:56:48 TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0
09-08-2015 20:03:53 Update for Microsoft Visual Studio 2015 (KB3073097)
09-08-2015 20:28:43 Windows Software Development Kit - Windows 10.0.26624
09-08-2015 21:37:52 Microsoft Visual Studio 2015 Tools für Windows 10 (Technical Preview)
09-08-2015 21:47:29 Update for Microsoft Visual Studio 2015 (KB3073097)
09-08-2015 21:48:46 Visual C++ für Mobile-Entwicklung (iOS-Unterstützung)
09-08-2015 21:50:23 Visual C++ für Mobile-Entwicklung (Android-Unterstützung)
11-08-2015 20:33:22 JRT Pre-Junkware Removal

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {07B9F40D-4E63-4DAF-8FD6-4EE67D558E0E} - System32\Tasks\{C7EAF7A5-FBDB-4A82-91B9-18268A1FDEE1} => Chrome.exe hxxp://ui.skype.com/ui/0/6.3.73.105.457/de/abandoninstall?page=tsMain
Task: {09F3DD2C-71B3-4A85-9364-C6386EA7E94C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {2676A993-D66B-4448-A860-F9763BEEDE42} - System32\Tasks\Opera scheduled Autoupdate 1426179695 => C:\Users\hendr_000\AppData\Local\Programs\Opera\launcher.exe [2015-06-10] (Opera Software)
Task: {33A65D12-4ED9-434B-96F9-68D1F9241A8B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-532561150-3242956754-1626305917-1001
Task: {395A679E-F1C7-4FA0-A08F-2B1F3D7E8E0F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {3C052D58-9ADE-4287-94F2-CA7AEFE0D177} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {45BB8FB7-E03E-47DC-9513-D76090D256DB} - System32\Tasks\{2EFDEB36-276A-48F3-BFAA-5F39F38EB409} => pcalua.exe -a C:\Users\hendr_000\Desktop\Forge_Server\forge-1.8-11.14.0.1285-1.8-installer-win.exe -d C:\Users\hendr_000\Desktop\Forge_Server
Task: {5960B03A-15EA-446B-A907-4FACA2EF3BDD} - System32\Tasks\{AA50E2BC-3878-43CC-9F92-EAF47C08AB82} => pcalua.exe -a C:\Users\hendr_000\Downloads\forge-1.7.10-10.13.3.1355-1.7.10-installer-win.exe -d C:\Users\hendr_000\Downloads
Task: {66C3A4D9-DEB8-4C5B-A1B7-F5C5B803BEA4} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] ()
Task: {6FE0E8CB-D288-41EA-BA1E-74239258B658} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.)
Task: {74768E11-5380-4F57-93C3-438B4A630F6A} - System32\Tasks\ASC8_SkipUac_hendrik_2002 => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2015-06-16] (IObit)
Task: {BB059E76-F9BF-44C9-B6ED-13F7B3CEF254} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation)
Task: {C426D609-BEA0-4503-A8F1-8EBBCE15C292} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2015-06-10] (IObit)
Task: {CB016BC7-2B36-4262-A1E8-B434854BFE31} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation)
Task: {D2174D06-84F3-46A9-9998-A0B5934A7B07} - System32\Tasks\Microsoft Office 15 Sync Maintenance for ARBEITSRECHNER-hendrik_2002 Arbeitsrechner => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-06-02] (Microsoft Corporation)
Task: {E2F4864D-34CE-4271-9B2D-F92D332804DB} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {E95F795D-D6BF-41F2-95CF-E279E4F0C080} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation)
Task: {E9D16D5F-9981-4966-AF14-EC8FFEC0427B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.)
Task: {EC96A4FB-11A6-4682-82A5-ADD27F0D47CA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ASC8_SkipUac_hendrik_2002.job => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\UIZJU.job => C:\Users\hendr_000\AppData\Roaming\UIZJU.exe <==== ACHTUNG

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2014-06-20 13:15 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Dirk\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Dirk\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\hendr_000\SkyDrive:ms-properties

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"

==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com
IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com
IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\google.de -> hxxps://www.google.de
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\it-fachportal.de -> hxxps://www.it-fachportal.de
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\localhost -> hxxps://localhost
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\localhost -> hxxp://localhost
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\sony.com -> sony.com

IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\100sexlinks.com -> 100sexlinks.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\101hotteens.com -> 101hotteens.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\101lottery.com -> 101lottery.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\123expressview.com -> 123expressview.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\123found.com -> 123found.com

Da befinden sich 4787 mehr eingeschränkte Seiten.

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-532561150-3242956754-1626305917-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

MSCONFIG\Services: a2AntiMalware => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: AMD FUEL Service => 2
MSCONFIG\Services: Apache2.4 => 2
MSCONFIG\Services: AtherosSvc => 2
MSCONFIG\Services: Avira.OE.ServiceHost => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: BstHdAndroidSvc => 2
MSCONFIG\Services: BstHdLogRotatorSvc => 2
MSCONFIG\Services: CCDMonitorService => 2
MSCONFIG\Services: DfSdkS => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: FileZilla Server => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: Hamachi2Svc => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMIGuardianSvc => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: McAfee SiteAdvisor Service => 2
MSCONFIG\Services: metasploitPostgreSQL => 2
MSCONFIG\Services: metasploitProSvc => 2
MSCONFIG\Services: metasploitThin => 2
MSCONFIG\Services: metasploitWorker => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: mysql => 2
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: Razer Game Scanner Service => 2
MSCONFIG\Services: rpcapd => 3
MSCONFIG\Services: RzKLService => 2
MSCONFIG\Services: Secunia PSI Agent => 2
MSCONFIG\Services: Secunia Update Agent => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: SlimService => 2
MSCONFIG\Services: StartMenuService => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: SystemExplorerHelpService => 3
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\Services: Tomcat7 => 2
MSCONFIG\Services: TuneUp.UtilitiesSvc => 2
MSCONFIG\Services: vncserver => 3
MSCONFIG\Services: WSearch => 2
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "mcpltui_exe"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "YTDownloader"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "FileZilla Server Interface"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKLM\...\StartupApproved\Run32: => "Andy"
HKLM\...\StartupApproved\Run32: => "avgnt"
HKLM\...\StartupApproved\Run32: => "emsisoft anti-malware"
HKLM\...\StartupApproved\Run32: => "SystemExplorerAutoStart"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "baerenmarke-widget.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "Adobe Gamma.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "SkyDrive"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "YTDownloader"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Dxtory Update Checker 2.0"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "AppEx Accelerator UI"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "msnmsgr"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Browser Extensions"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "DesktopOK"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Search Protection"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "XAMPP Control Panel"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Advanced SystemCare 8"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Steam"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{F603271F-944B-498D-AC22-4EAF1D17D497}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{8124257A-9E01-4AA5-ABC1-9A3123988F8B}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{58F47C55-D17A-47EC-8210-FC35A9ECA66D}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{F9C56998-E744-46C8-9D5A-4B17A51170BA}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{110661DB-3FDC-4FBB-9541-3908BC904AFC}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{21DE293D-9203-44EC-B297-61B809F74DB0}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{3E8C9A49-86D9-4A33-9F0E-66247067111A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{0B99A754-8F02-41E1-9E03-86D4B31C07A4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{937AF17E-DE8A-4FF7-BFE5-5ECE5D746A91}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{201F7BC2-A8E6-435C-9C22-3E3C55CD16D2}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{7065C90E-0A0D-4152-992B-29659584DB4D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{AD4DBDEE-AFF6-4623-B635-59FBD7140C4F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{A062D843-8F1F-4086-A697-0FD176A8A4CE}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{6517DA4C-6C29-4B63-B979-26646CB38DE9}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{F3988EAE-EE5B-4C4E-8577-5531B31B2D54}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{30FC91E0-54F5-4661-A362-22391693FBD1}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{14A5D67B-A0CC-4FC1-B8E0-27E11FE3C812}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{AC7545A3-C40E-42BC-B021-A409093FD5D5}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{C49ED8EA-CEDC-480F-8268-72D9D2E80236}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{98895709-AB83-40CA-98C2-0FCEB9C11B0F}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{ED980AF1-7766-421D-9BEF-34D3EAD5ED61}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [TCP Query User{C51DEAA9-3A39-4D25-8CAE-98D98A6CCA14}C:\users\hendr_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hendr_000\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{78A6F80D-4855-4333-A219-533386A8846C}C:\users\hendr_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hendr_000\appdata\roaming\spotify\spotify.exe
FirewallRules: [{25D3D9EE-3067-4C7D-A001-C7BB1501B972}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{3E6B2FAB-02C6-4785-8D12-F3F53D61F4B2}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{E3EDC567-9BD2-40E6-A1EB-5E7D22EE01F1}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{D0A6FA2F-DAD8-4F17-87BF-E3A9B2741487}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [TCP Query User{966E9B2B-C676-4293-BB2D-AB13D02E8721}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{5CAC66F1-A67C-437B-8AF5-800A25FE0B92}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{F25D1282-8486-4566-9071-614CA365D414}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{2F74FC5E-6F3A-4C68-B41B-92313370478D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{D4291174-E709-442A-8B13-5907C13CDD1C}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{EF07999A-2EC7-4029-A9DD-087B14ED9F38}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{D704C46B-A0E9-4437-A026-DD697C261F3C}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{F2F5AFF0-B67A-4812-9D68-04A5CF501D01}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{1E82290E-6F43-4839-9A25-504EE7BC17A8}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{4EC33B1B-7105-458D-8AC5-CC5D4F756A28}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{B68AA5F6-9E41-465D-B3F3-48242FAFFABD}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [{8416B314-3B5C-4D5D-99A6-EC2DE485097C}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [TCP Query User{8228AF30-B5A9-4EC1-B545-6FA81CE74AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{E6F40B64-B57A-4C15-8C2C-49BC6E3E8FB3}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{BCA36857-D883-44C0-8DC2-9B618BF56C6B}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{C7578792-77F8-46BE-B86E-3A5F838C3B48}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{77ADEE26-B33C-4BF0-9F83-8E82C83D39F0}C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe] => (Allow) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [UDP Query User{71EA72B4-D2F6-4874-B079-256FB5001B34}C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe] => (Allow) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{13AD290E-BC56-40BC-993D-552F7C50D99F}] => (Block) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{2E56D11E-1DD0-4C6E-97A0-D8AEB420D402}] => (Block) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{11B68A8A-F88A-4C59-8D9B-863AFC4A8FA8}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{F0B07D80-7C82-412A-BFDE-F0C3AF2FBC4B}] => (Allow) LPort=2869
FirewallRules: [{0BC3FFDC-99C1-4A49-9F60-86A73EB7C207}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{5026E3CD-CE3F-4F23-B7A1-EEBEBE6B93A3}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{3B8F6EAA-C35F-42E8-9FEC-0CB57CC15A05}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [{1EC34949-E805-4158-AA08-5C4EA2CF8CA9}] => (Block) C:\program files (x86)\brackets\node.exe
FirewallRules: [{312D4831-5FB1-441E-8ADD-05B62262FDE2}] => (Block) C:\program files (x86)\brackets\node.exe
FirewallRules: [TCP Query User{75B351CF-A13D-47E9-A3D2-91B4CD61C40A}C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe
FirewallRules: [UDP Query User{1FB4D50B-A12B-4E8D-B4C7-B68FDFEBB3C5}C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe
FirewallRules: [{0843895D-6295-4013-8667-8D73952E5907}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{C1FDEF06-46C9-4C74-A413-A6FB6C898410}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{E5E28012-02C1-46F0-96DA-B1F6099ABFDF}C:\metasploit\ruby\bin\ruby.exe] => (Allow) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [UDP Query User{D4482865-0BDB-4A24-9FD2-72567ABB7E8E}C:\metasploit\ruby\bin\ruby.exe] => (Allow) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [{8B632EB9-B21D-406E-B9D0-B30D6C4E377A}] => (Block) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [{6C37860C-6BDC-4F3C-A726-82BB64A610BE}] => (Block) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [TCP Query User{C2BF4B57-117F-4B6C-BB07-9F5A32E4FC8F}C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe
FirewallRules: [UDP Query User{45A7B396-1FF5-4D6B-9B7B-2B5A030BF2A2}C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe
FirewallRules: [TCP Query User{0469D19F-D3D1-4857-9795-59CDD7F044CF}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{6F497ACC-EA15-437F-8940-453641BC42EB}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [{A8770975-DA84-498D-B8DA-8C5513D789AB}] => (Block) C:\xampp\apache\bin\httpd.exe
FirewallRules: [{3E26A083-9947-4AEC-8A50-300623DCCDAE}] => (Block) C:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{DD19F79F-C9BC-4DDC-982B-73EF0ABB22EB}C:\program files (x86)\cryengine\bin64\editor.exe] => (Allow) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [UDP Query User{6D15D010-03CE-4475-BB59-FA9ADA3C83D2}C:\program files (x86)\cryengine\bin64\editor.exe] => (Allow) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [{BF69B881-B3AA-4C53-A25E-A6B884D9E701}] => (Block) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [{68E88234-A025-4671-A891-776DB26DA38B}] => (Block) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [TCP Query User{B7B9E0B8-B1F3-435B-9788-62E8A6B9A872}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [UDP Query User{00AAE738-611C-48EC-900A-12AFD3FCAFF9}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{D5D98A23-ADE4-44D5-81F9-CAC1B3950615}] => (Block) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{1054CED2-AD7C-4B03-8A49-1EED7C02EFB9}] => (Block) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [TCP Query User{AB1D47A1-9E92-4AAC-BB5E-DA0C8FD4EF7C}C:\program files (x86)\cryengine\bin64\gamesdk.exe] => (Allow) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [UDP Query User{6178A0C5-398B-48E1-9D81-FE61B22EEA6F}C:\program files (x86)\cryengine\bin64\gamesdk.exe] => (Allow) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [{E51989AF-29B9-4EA4-A139-47DB360F67E0}] => (Block) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [{2BF15603-7089-4657-AD03-C61CDE23538E}] => (Block) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [TCP Query User{79A5DCA7-57DE-48B1-A927-D33F287E54B2}C:\users\hendr_000\documents\cryengine\bin64\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [UDP Query User{32A12F2F-F112-44DA-BE11-31BF731E9E3C}C:\users\hendr_000\documents\cryengine\bin64\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [{458335D4-AF90-4202-A408-1C24E6B62BBB}] => (Block) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [{20CDAE8E-5115-4272-B9E6-037EFCB98608}] => (Block) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [TCP Query User{6A9E6584-6304-42F5-993B-FBDCF075838A}C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe
FirewallRules: [UDP Query User{376D2007-B844-47FD-BE56-641712F1D324}C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe
FirewallRules: [TCP Query User{C95AF740-FE53-4E45-8DCA-33EB7B1AAED9}C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [UDP Query User{8BCD298F-9269-4428-9D23-151F1538120A}C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [{D2F96B2D-CCD8-4891-8050-C2DFD04EACBA}] => (Block) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [{C76A41AD-FA49-43E4-96FE-5EE84A3DD881}] => (Block) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [TCP Query User{8D602232-55C1-41DD-8A01-F33A236DB5AE}C:\users\hendr_000\documents\cryengine\bin32\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [UDP Query User{106CDF08-7E78-4A34-8001-6EE16CB96766}C:\users\hendr_000\documents\cryengine\bin32\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [{D0A9B9B4-68D4-4FEC-B37F-67AEEFF0B203}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [{323C0C18-6D80-4559-896D-E5AF6911C1E7}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [TCP Query User{6FE9F28C-F70D-4C5D-B9FF-019AFEEC7B93}C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [UDP Query User{C1804E13-76AB-41DB-9328-5257004FE841}C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [{D6EB6422-202A-4A5E-BF0B-B0A6B59D50E4}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [{242B9913-EA5A-4C4E-AAE3-16230FB957E4}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [TCP Query User{195EE537-01C6-44CD-A307-800C1CF94A87}C:\cpp\examples\internet\chat\chat.exe] => (Allow) C:\cpp\examples\internet\chat\chat.exe
FirewallRules: [UDP Query User{DABE827D-34BA-44A8-9A8B-B6BC17E4E3C5}C:\cpp\examples\internet\chat\chat.exe] => (Allow) C:\cpp\examples\internet\chat\chat.exe
FirewallRules: [{56CF1C8A-1443-4F27-8C85-F6F5F743323A}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe
FirewallRules: [{6409AB8A-8598-45F1-AE83-8F1624FE5B58}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe
FirewallRules: [TCP Query User{314F0CD0-1A80-483F-82FF-36198B8A1FDB}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{9957FF52-D7D5-4B4B-8FA1-FCA9A71A2BF3}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{F87B52C1-E5E6-47DB-BCA6-B162A70A7ACC}] => (Block) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{63A0C587-58E4-407A-8430-F91740892A6D}] => (Block) C:\program files\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{A49BFC24-9286-49C3-9304-21FC0750A1DA}C:\program files\unity 5\unity\editor\unity.exe] => (Allow) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [UDP Query User{B3EDA260-403F-428A-A8B9-B5762318613D}C:\program files\unity 5\unity\editor\unity.exe] => (Allow) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [{9FC5CAC6-6A24-4340-85AF-9B8620A4E552}] => (Block) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [{7C4DEE34-41D9-4C38-B29B-A54F75A853AB}] => (Block) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [TCP Query User{854AD037-515D-4925-96DC-1AF287E7C42B}C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe] => (Allow) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [UDP Query User{D8EC7D10-43E7-4BC2-B202-3CA1FF1E8950}C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe] => (Allow) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{03B02D1A-6516-46D2-960D-452EC55DCBF3}] => (Block) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{2A9E7B31-8490-426A-A6E9-FCCC572E6557}] => (Block) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{B4AFDC92-AA95-41B4-8257-B150514410FA}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{FF23AC4E-554B-4AA2-9E9A-5778B5A891E5}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{1EAA34F2-4342-4CD9-893A-1307A4F12A04}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [{50A8C8BE-7BBC-442E-A24D-898131A9B1D7}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [TCP Query User{EC3AE3A3-7D9A-4A24-8D07-781EA2C5AF3D}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [UDP Query User{9229B7E1-BB80-4D3C-93E0-DC19562706F8}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{9D113644-2AC2-463B-925A-5D8955B6716B}] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{4DD836E9-2A23-4519-8B28-47FF1B608D07}] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{1EBFDC13-43FF-4939-9C24-F738E8D2DFFF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FBBADDCD-8B85-42A5-9977-CD685D11827B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E58493BE-881A-4D98-9E39-7E9F29C8366A}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{313285AD-26AB-4542-BD25-A04B23F389A7}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{64A382BA-47D7-4C03-93D9-9DFF6BAD8F24}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{8B089474-445E-4F28-A5B4-B0E92401E283}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{B0FC994D-1EB8-4F27-BE21-59537526801E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{EFAB1B06-094C-4AD0-B928-EF375946CC03}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe
FirewallRules: [{EFC62194-F61D-417B-A09C-166CD65856EF}] => (Allow) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (08/11/2015 08:49:13 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet.

Details:
        Der Inhaltsindexkatalog ist fehlerhaft.  0xc0041801 (0xc0041801)

Error: (08/11/2015 08:49:13 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4810 - enduser\mssearch2\search\ytrip\tripoli\inverted\decodinglayerpages.h (591)} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben.

Details:
        Die Daten sind unzulässig.  0x8007000d (0x8007000d)

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/11/2015 08:34:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error: (08/11/2015 08:34:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (08/11/2015 08:34:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (08/11/2015 08:33:06 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.


Systemfehler:
=============
Error: (08/11/2015 08:34:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "WMI-Leistungsadapter" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/11/2015 08:34:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "VMware Authorization Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/11/2015 08:34:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "VMware USB Arbitration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/11/2015 08:34:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "VMware DHCP Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/11/2015 08:34:54 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "VMware NAT Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 1000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/11/2015 08:34:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "LiveUpdate" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/11/2015 08:34:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Windows Phone IP over USB Transport (IpOverUsbSvc)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/11/2015 08:34:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft Office-Klick-und-Los-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/11/2015 08:34:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Xamarin Bonjour Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/11/2015 08:34:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Advanced SystemCare Service 8" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.


Microsoft Office:
=========================
Error: (08/11/2015 08:49:13 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Details:
        Der Inhaltsindexkatalog ist fehlerhaft.  0xc0041801 (0xc0041801)
The catalog is corrupt

Error: (08/11/2015 08:49:13 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: Details:
        Die Daten sind unzulässig.  0x8007000d (0x8007000d)
4810 - enduser\mssearch2\search\ytrip\tripoli\inverted\decodinglayerpages.h (591)

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/11/2015 08:46:37 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/11/2015 08:34:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: WmiApRplWmiApRpl8F2030000E5050000

Error: (08/11/2015 08:34:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Performance163707000000000000000000008F020000

Error: (08/11/2015 08:34:56 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Performance163707000000000000000000008F020000

Error: (08/11/2015 08:33:06 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.


CodeIntegrity:
===================================
  Date: 2015-08-10 16:06:04.164
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-10 16:06:02.149
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-10 16:05:59.777
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:56.369
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:54.362
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:51.817
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:10.881
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 17:36:04.691
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 14:09:10.418
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-07 14:09:08.762
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Speicherinformationen ===========================

Processor: AMD E1-2500 APU with Radeon(TM) HD Graphics
Prozentuale Nutzung des RAM: 37%
Installierter physikalischer RAM: 3525.01 MB
Verfügbarer physikalischer RAM: 2201.13 MB
Summe virtueller Speicher: 7109.01 MB
Verfügbarer virtueller Speicher: 5768.75 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:444.6 GB) (Free:220.64 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D5A694CC)

Partition: GPT.

==================== Ende von Ergebnis ============================


schrauber 12.08.2015 11:31


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Wandalensalz 12.08.2015 15:09

ESET-Log:

Code:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=ab4d3949036bb34aadba8d29f8c7089d
# end=init
# utc_time=2015-08-12 01:07:08
# local_time=2015-08-12 03:07:08 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
Update Init
Update Download
Update Finalize
Updated modules version: 25244
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=ab4d3949036bb34aadba8d29f8c7089d
# end=updated
# utc_time=2015-08-12 01:12:31
# local_time=2015-08-12 03:12:31 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=ab4d3949036bb34aadba8d29f8c7089d
# engine=25244
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-08-12 01:29:34
# local_time=2015-08-12 03:29:34 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 171347 16468564 0 0
# scanned=5834
# found=48
# cleaned=0
# scan_time=1018
sh=7DBCF0EE965D167E91F201F7316C3D24121A506A ft=1 fh=c71c001123e782a4 vn="Variante von Win32/AdWare.AddLyrics.AI Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Buzz-it-soft\Buzzi.exe.vir"
sh=47E1AAB49E4BBE6ED704F804A4B402ACA07D74FE ft=1 fh=d4dd8a748ee934d3 vn="MSIL/Tuguu.C evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NewPlayer\LTV.exe.vir"
sh=77AED229C7D6010F888A35E2E62698B659EAFD15 ft=1 fh=ae276fc3176aec5b vn="Variante von MSIL/NewPlayer.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NewPlayer\NewPlayer.exe.vir"
sh=9151592DCBBBA22DA88A7D1EB5CB8DCD422C11A8 ft=1 fh=7f79c4a3570c96e6 vn="MSIL/NewPlayer.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NewPlayer\NewPlayerUpdaterService.exe.vir"
sh=5416A12A9D3D9A4BCC4D675EB6013F1881C66616 ft=1 fh=98db3d886a06d0e8 vn="Variante von MSIL/NewPlayer.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NewPlayer\references\NewPlayerChecker.exe.vir"
sh=523D4519CC48397A5A156E498062C6BC467E39CF ft=1 fh=04c87c71e00c7149 vn="Win32/Systweak.O evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\CleanSchedule.exe.vir"
sh=29537B5D9E0B9006067890E1D21D0CE6F22E8A99 ft=1 fh=6e7ef67f604e413f vn="Win32/MyPCBackup.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\Cloud_Backup_Setup.exe.vir"
sh=EE0DBC090D6FC9DA0D0A84516D8D34BF1F96E196 ft=1 fh=44b5db033c27eea0 vn="Win32/MyPCBackup.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\Cloud_Backup_Setup_Intl.exe.vir"
sh=56EB7E29FBBF247123649AFC75AA2CAE31AA859D ft=1 fh=987f044246c72784 vn="Variante von Win32/Systweak.K evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\RCPUninstall.exe.vir"
sh=A99C38C5C60D2C80CB4839C6F00A6CD7EAF63FB2 ft=1 fh=32fe293d6b992c7d vn="Variante von Win32/Systweak evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\RegCleanPro.exe.vir"
sh=476063885747EDD774A6B8CB2790703503A75A55 ft=1 fh=d7bb79193adaee2e vn="Win32/Systweak.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\SSDPTstub.exe.vir"
sh=4E949509F87DCD9EA158D52BCD4391ADFF211475 ft=1 fh=2cfdf23b0e178625 vn="MSIL/AdvancedSystemProtector.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RegClean Pro\systweakasp.exe.vir"
sh=AFB95723B245EB95106EC407D2443BE30426C079 ft=1 fh=045fdc84af3b3525 vn="Variante von Win32/Thinknice.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\BHOEnabler.exe.vir"
sh=53F226B3D1D3828304E40C6C7A50667ADF23B42A ft=1 fh=e1ea10a5e9416a5c vn="Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\DpInterface32.dll.vir"
sh=0CB68F399D491465198E3E86F1D2923A211614E7 ft=1 fh=021f675753f993f2 vn="Win64/Thinknice.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\DpInterface64.dll.vir"
sh=A8B6642986C14994DCDD0AD231A2A972F0DAE16B ft=1 fh=c71c0011202d025d vn="Variante von Win32/Thinknice.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\DpInterfacef32.dll.vir"
sh=86EA851108D635D9ED47C01E86899845DFDA3EC7 ft=1 fh=90733a3b10b3e858 vn="Variante von Win32/Thinknice.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\HpUI.exe.vir"
sh=12EBF6FC8AD543662053CA101C2D5DA175137EB2 ft=1 fh=c71c00119e5c1a87 vn="Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\Loader32.exe.vir"
sh=8F0ABE23DDA3F9DC04497B1A4F455AF8CE9D45B8 ft=1 fh=787e176d56997de7 vn="Win64/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\Loader64.exe.vir"
sh=A8E3A9E6972C6F8B253EA0E1837AEEBF0A07B187 ft=1 fh=e2a5b168a3934371 vn="Win32/Thinknice.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\RSHP.exe.vir"
sh=30E2FB1C671B2808D2E80518D793575965AF2416 ft=1 fh=d06e6f3f3f60e357 vn="Variante von Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SearchProtect32.dll.vir"
sh=AC11914CC02E023E2EF06A80DEE1701419A5473A ft=1 fh=4cb2d0bd10147652 vn="Win64/Thinknice.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SearchProtect64.dll.vir"
sh=36F969E522FD53A189312D946C430EFD02D5A982 ft=1 fh=5d022c015afe1524 vn="Variante von Win32/ELEX.AV evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupIePluginServiceUpdate.exe.vir"
sh=D037F58CF4B36F3B437FAA0D9500720445B27D65 ft=1 fh=b07c7921935b766c vn="Win32/Thinknice.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupTab.dll.vir"
sh=4139F95644E13A650D4827C943BCC9F2F0F6AA93 ft=1 fh=3b96e1736604b8bc vn="Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\uninstall.exe.vir"
sh=79C9BD304C93AB8FD0544108656A899993DB14EF ft=1 fh=e6f80544d6e8089f vn="Win32/Thinknice.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\WindowsSupportDll32.dll.vir"
sh=96B85214CD9E4FF85AC6144E7EF3DDF9E0F215E6 ft=1 fh=098a6735f96a550a vn="Win64/Thinknice.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\WindowsSupportDll64.dll.vir"
sh=46560D0E2662C1C44F72B68EA5A3C2D7F0E77EBE ft=1 fh=c71c001105569964 vn="Variante von Win32/ELEX.AD evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\IePluginService\PluginService.exe.vir"
sh=36F969E522FD53A189312D946C430EFD02D5A982 ft=1 fh=5d022c015afe1524 vn="Variante von Win32/ELEX.AV evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\IePluginServices\PluginService.exe.vir"
sh=4028A3345B3E38EB46A30912717A944C7FC9200E ft=1 fh=316b7ff0219da2f1 vn="Variante von Win32/Adware.CouponMarvel.D Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\SecurityUtility\NSISHelper.dll.vir"
sh=A03F0DFEF029A6987DB237FBAF966ABCD7B2E3D0 ft=1 fh=1f2e7f89fdfb1176 vn="Variante von Win32/Adware.CouponMarvel.D Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\SecurityUtility\RfndNSIS.dll.vir"
sh=2435622D8AF70F746E792AE2607C9709C19C21C2 ft=1 fh=5badd635c189694a vn="Variante von Win64/Adware.CouponMarvel.A Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\SecurityUtility\SecurityUtility.exe.vir"
sh=E71AFC3E771572B0EB1FB8699303038B7844B081 ft=1 fh=e7fd84d70d17f2ae vn="Variante von Win32/Adware.CouponMarvel.D Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\SecurityUtility\SecurityUtility32.dll.vir"
sh=660FA4C627579411A0491AC2A094B0F988B57FD2 ft=1 fh=7f2b9ab44b52df60 vn="Variante von Win64/Adware.CouponMarvel.A Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\SecurityUtility\SecurityUtility64.dll.vir"
sh=54E3EF4EBDC919E599C943D98D0D504112B8278A ft=1 fh=ce3bc784202b61f5 vn="Variante von Win32/Adware.CouponMarvel.D Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\SecurityUtility\SoftConfigTest.exe.vir"
sh=061B2D9CC0A4D5087045D42C9E81C96702B29FC0 ft=1 fh=c71c0011496d5a80 vn="Variante von Win32/ELEX.BN evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\WindowsMangerProtect\update\update.exe.vir"
sh=A57A0DBBB1F4509E15617380DE4A0D02B2751622 ft=1 fh=c71c001135f763b4 vn="Variante von Win32/ELEX.AE evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\WPM\wprotectmanager.exe.vir"
sh=3592FF950CE4975BC39F51F057D4343585A5367F ft=1 fh=c71c0011eaadbd0d vn="Win32/AnyProtect.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Local\AnyProtectScannerSetup.exe.vir"
sh=2DAAB83B0439BC76845E58F3F7DDB84EE8E210C4 ft=1 fh=855a37aa5dbeb36f vn="Win32/InstallCore.PC evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\0F1F1C2Y1H1P1C0I0T\FRAPS Packages\uninstaller.exe.vir"
sh=1E380A2D4B4138B280EE3063C0F9B0558C131271 ft=0 fh=0000000000000000 vn="JS/Trackware.Agent.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\Extensions\detgdp@gmail.com\chrome\content\js\epurls.js.vir"
sh=8B414057414E369B9B99B5DE95F198A1DA5E182C ft=0 fh=0000000000000000 vn="JS/Trackware.Agent.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\Extensions\detgdp@gmail.com\chrome\content\js\inject.js.vir"
sh=8E84B3369C409B88BFF2F167495B5BDA08485065 ft=1 fh=cea6bc5b1fc91d53 vn="Variante von Win32/DealPly.S evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\SaveSense\UpdateProc\UpdateTask.exe.vir"
sh=079B025C4704D1D26F6B4AC4D1729C5DF4A3D489 ft=1 fh=c71c001104e3a0de vn="Win32/Thinknice.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\SupTab\SupTab.dll.vir"
sh=9E77E1D2FD7B77B0FD8A71A70C35DD5A16836CF3 ft=1 fh=b241df9fafd25e77 vn="Win32/Systweak.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\Systweak\ssd\SSDPTstub.exe.vir"
sh=9777335A8170D7E75A4DFD2E765751E5BC1EE05C ft=1 fh=f8e0bce96f009e45 vn="Win32/Adware.ConvertAd.AQ Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\VOPackage\Uninstall.exe.vir"
sh=3E757B27DBAF69F456D841C4A01686DFAB7D6BAD ft=1 fh=0cc39972fe10ba08 vn="Variante von Win32/Adware.ConvertAd.KZ.gen Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\hendr_000\AppData\Roaming\VOPackage\VOPackage.exe.vir"
sh=9CE5F659BDD89907624541CB98681224CA75D886 ft=1 fh=9b9a5086efdbb0a1 vn="Variante von Win64/Systweak.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\System32\roboot64.exe.vir"
sh=70B795B641AE13A220CA59A0A49E46F43C9CB182 ft=1 fh=76d4263cc727e821 vn="Variante von Win64/BrowseFox.AD evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw64.sys.vir"

Checkup.txt:

Code:

Results of screen317's Security Check version 1.006 
  x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
Windows Defender 
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 Secunia PSI (3.0.0.10004) 
 Wise Registry Cleaner 8.61 
 Visual Studio Extensions for Windows Library for JavaScript
 Microsoft VisualStudio JavaScript Language Service
 Java SE Development Kit 7 Update 75
 Microsoft VisualStudio JavaScript Project System
 Java version 32-bit out of Date!
  Adobe Flash Player        17.0.0.134 Flash Player out of Date! 
 Adobe Reader XI 
 Mozilla Firefox (36.0)
 Mozilla Thunderbird 24.3.0 Thunderbird out of Date! 
 Google Chrome (44.0.2403.125)
 Google Chrome (44.0.2403.130)
````````Process Check: objlist.exe by Laurent```````` 
 Windows Defender MSMpEng.exe
 Windows Defender MpCmdRun.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````

FRST.txt:

Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:11-08-2015 02
durchgeführt von hendrik_2002 (Administrator) auf ARBEITSRECHNER (12-08-2015 16:00:55)
Gestartet von C:\Users\hendr_000\Desktop\Logs
Geladene Profile: hendrik_2002 (Verfügbare Profile: hendrik_2002 & Dirk & Niklas Steinmetz & Administrator)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
(Apple Inc.) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
(IObit) C:\Program Files (x86)\IObit\iFreeUp\iFreeUpMini.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
() C:\Users\hendr_000\Desktop\SecurityCheck.exe
() C:\Users\hendr_000\Desktop\SecurityCheck.exe


==================== Registry (Nicht auf der Ausnahmeliste) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKLM-x32\...\Run: [iFreeUp] => C:\Program Files (x86)\IObit\iFreeUp\iFreeUpMini.exe [470304 2015-03-31] (IObit)
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit)
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Keine Datei

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.msn.com/de-de/?pc=UP97&ocid=UP97DHP
hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPF4C30013-DBA8-4203-9422-5B83732DCF2E&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKU\S-1-5-21-532561150-3242956754-1626305917-1001 -> {36A2063E-A8A8-41E0-B063-C2945B3B3AA1} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-21] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-21] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0186D2C8-01F4-4F66-A6D2-3A87F13D817A}: [DhcpNameServer] 192.168.1.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735
FF SelectedSearchEngine: Yahoo!
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-20] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-21] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-20] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-01-26] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-532561150-3242956754-1626305917-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-06-20] ()
FF Extension: Kein Name - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-05-27]
FF Extension: Kein Name - C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\extensions\amazon-icon@giga.de [nicht gefunden]
FF Extension: Kein Name - C:\Users\hendr_000\AppData\Roaming\Mozilla\Firefox\Profiles\a42jhbp7.default-1396422616735\extensions\iobitascsurfingprotection@iobit.com [nicht gefunden]
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Firefox Developer Edition\firefox.exe

Chrome:
=======
CHR Profile: C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-06-06]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Adblock Pro) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2015-06-06]
CHR Extension: (uMatrix) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfcmafjalglgifnmanfmnieipoejdcf [2015-04-20]
CHR Extension: (Chrome Apps & Extensions Developer Tool) - C:\Users\hendr_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohmmkhmmmpcnpikjeljgnaoabkaalbgc [2015-06-06]
CHR HKU\S-1-5-21-532561150-3242956754-1626305917-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fkkcgfbgohboipdhliafmacjnhjbhmim] - https://clients2.google.com/service/update2/crx

Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-532561150-3242956754-1626305917-1001) OperaStable - "C:\Users\hendr_000\AppData\Local\Programs\Opera\Launcher.exe"

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2015-02-04] (Adobe Systems) [Datei ist nicht signiert]
R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [814880 2015-04-03] (IObit)
S4 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-03-17] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S4 Apache2.4; C:\xampp\apache\bin\httpd.exe [22016 2014-07-17] (Apache Software Foundation) [Datei ist nicht signiert]
R2 Bonjour Service; C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe [384512 2015-07-21] (Apple Inc.) [Datei ist nicht signiert]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
S4 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-27] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2753720 2015-07-01] (Microsoft Corporation)
S4 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2015\DfsdkS64.exe [544768 2009-08-24] (mst software GmbH, Germany) [Datei ist nicht signiert]
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21744 2015-07-09] (Microsoft Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-09] (IObit)
S4 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-03-30] (LogMeIn, Inc.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S4 metasploitPostgreSQL; C:\metasploit\postgresql\bin\pg_ctl.exe [76288 2015-03-04] (PostgreSQL Global Development Group) [Datei ist nicht signiert]
S4 metasploitProSvc; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 metasploitThin; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 metasploitWorker; C:\metasploit\ruby\bin\ruby.exe [107178 2015-03-04] (hxxp://www.ruby-lang.org/) [Datei ist nicht signiert]
S4 mysql; C:\xampp\mysql\bin\mysqld.exe [10982912 2014-07-18] () [Datei ist nicht signiert]
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert]
S3 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2015-06-22] ()
S4 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
S4 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Mister Group)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [134656 2015-07-09] (Microsoft Corporation) [Datei ist nicht signiert]
S4 Tomcat7; C:\xampp\tomcat\bin\tomcat7.exe [80896 2013-07-02] (Apache Software Foundation) [Datei ist nicht signiert]
S4 vncserver; C:\Program Files\RealVNC\VNC Server\vncservice.exe [639808 2015-01-28] (RealVNC Ltd)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [52968 2015-07-07] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4265984 2014-12-11] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-12-21] (Advanced Micro Devices)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-04-15] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-03-30] (LogMeIn Inc.)
S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-08-19] (Riverbed Technology, Inc.)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-07-09] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [146072 2015-07-09] (Oracle Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [76480 2015-05-21] (VMware, Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 cpuz137; \??\C:\Users\HENDR_~1\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-12 15:32 - 2015-08-12 15:32 - 00852684 _____ C:\Users\hendr_000\Downloads\SecurityCheck.exe
2015-08-12 15:32 - 2015-08-12 15:32 - 00852684 _____ C:\Users\hendr_000\Desktop\SecurityCheck.exe
2015-08-12 15:06 - 2015-08-12 15:06 - 00000000 ____D C:\Program Files (x86)\ESET
2015-08-12 15:05 - 2015-08-12 15:06 - 02870984 _____ (ESET) C:\Users\hendr_000\Downloads\esetsmartinstaller_deu.exe
2015-08-12 15:05 - 2015-08-12 15:05 - 00000000 ___HD C:\OneDriveTemp
2015-08-12 15:02 - 2015-08-12 15:03 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\ProductData
2015-08-12 15:02 - 2015-08-12 15:02 - 00000000 ____D C:\ProgramData\ProductData
2015-08-11 20:32 - 2015-08-11 20:32 - 01797896 _____ (Malwarebytes Corporation) C:\Users\hendr_000\Downloads\JRT.exe
2015-08-11 18:25 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-11 18:25 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-11 18:25 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-10 15:57 - 2015-08-10 15:57 - 00000000 ____D C:\Users\hendr_000\Downloads\metasploitable-linux-2.0.0
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Xamarin
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\ProgramData\MonoTouch
2015-08-10 15:53 - 2015-08-10 15:53 - 00000000 ____D C:\ProgramData\Mono for Android
2015-08-09 22:25 - 2015-08-09 22:25 - 00001894 _____ C:\Users\hendr_000\Desktop\VS 2015.lnk
2015-08-09 22:14 - 2015-08-11 20:23 - 00017114 _____ C:\Windows\PFRO.log
2015-08-09 21:59 - 2015-08-10 16:14 - 00000000 ____D C:\Users\hendr_000\Documents\Visual Studio 2015
2015-08-09 21:55 - 2015-08-09 21:55 - 00000000 ____D C:\Program Files (x86)\Xamarin
2015-08-09 21:54 - 2015-08-09 21:55 - 00000000 ____D C:\ProgramData\Monodoc
2015-08-09 20:42 - 2015-08-09 20:42 - 00000000 ____D C:\Program Files\Application Verifier
2015-08-09 20:42 - 2015-08-09 20:42 - 00000000 ____D C:\Program Files (x86)\Application Verifier
2015-08-09 20:41 - 2015-08-09 20:41 - 00000000 ____D C:\ProgramData\Windows App Certification Kit
2015-08-09 20:27 - 2015-08-09 20:27 - 00000000 ____D C:\Program Files (x86)\AppInsights
2015-08-09 20:26 - 2015-08-09 20:26 - 00000000 ____D C:\ProgramData\NuGet
2015-08-09 20:26 - 2015-08-09 20:26 - 00000000 ____D C:\Program Files (x86)\NuGet
2015-08-09 19:56 - 2015-08-09 19:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools
2015-08-09 19:54 - 2015-08-09 19:54 - 00000000 ____D C:\Program Files (x86)\Android
2015-08-09 19:50 - 2015-08-09 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0
2015-08-09 19:43 - 2015-08-09 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Deutsch
2015-08-09 19:39 - 2015-08-09 19:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-08-09 19:30 - 2015-08-09 20:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2015-08-09 19:29 - 2015-08-09 19:29 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2015-08-09 19:28 - 2015-08-09 19:28 - 00000000 ____D C:\Program Files (x86)\ShellDir
2015-08-09 19:21 - 2015-08-09 19:21 - 00000000 ____D C:\ProgramData\Microsoft DNX
2015-08-09 19:21 - 2015-08-09 19:21 - 00000000 ____D C:\Program Files\Microsoft DNX
2015-08-09 19:08 - 2015-08-09 19:16 - 00000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2015-08-09 19:08 - 2015-08-09 19:08 - 00000000 ____D C:\Users\Administrator\Documents\ManageYourLife 1.0.0
2015-08-09 19:05 - 2015-08-09 19:05 - 00000000 ____D C:\Program Files\IIS Express
2015-08-09 19:05 - 2015-08-09 19:05 - 00000000 ____D C:\Program Files (x86)\IIS Express
2015-08-09 19:03 - 2015-08-09 19:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools
2015-08-09 19:01 - 2015-08-09 19:01 - 00000000 ____D C:\Program Files (x86)\Microsoft WCF Data Services
2015-08-09 18:58 - 2015-08-09 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression
2015-08-09 18:56 - 2015-08-09 18:56 - 00001536 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk
2015-08-09 18:53 - 2015-08-09 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1
2015-08-09 18:53 - 2015-08-09 18:53 - 00000000 ____D C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-08-09 18:52 - 2015-08-09 19:50 - 00000000 ____D C:\Program Files (x86)\Windows Phone Kits
2015-08-09 18:52 - 2015-08-09 19:48 - 00000000 ____D C:\Program Files (x86)\Microsoft XDE
2015-08-09 18:48 - 2015-08-09 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2015-08-09 18:40 - 2015-08-09 18:40 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 12.0
2015-08-09 18:40 - 2015-08-09 18:40 - 00000000 ____D C:\Program Files (x86)\HTML Help Workshop
2015-08-09 18:30 - 2015-08-09 18:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2015-08-09 18:27 - 2015-08-09 18:27 - 00000000 ____D C:\Windows\symbols
2015-08-09 18:22 - 2015-08-09 19:40 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-08-09 18:22 - 2015-08-09 18:35 - 00000000 ____D C:\Windows\SysWOW64\1031
2015-08-09 18:22 - 2015-08-09 18:26 - 00000000 ____D C:\Windows\system32\1033
2015-08-09 18:22 - 2015-08-09 18:22 - 00001537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk
2015-08-09 18:22 - 2015-08-09 18:22 - 00000000 ____D C:\Windows\SysWOW64\1033
2015-08-09 18:12 - 2015-08-12 15:01 - 00001407 _____ C:\Windows\setupact.log
2015-08-09 18:12 - 2015-08-09 21:48 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-08-09 18:12 - 2015-08-09 18:22 - 00000000 ____D C:\Windows\system32\1031
2015-08-09 18:12 - 2015-08-09 18:12 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 14.0
2015-08-09 18:12 - 2015-08-09 18:12 - 00000000 _____ C:\Windows\setuperr.log
2015-08-09 17:57 - 2015-06-22 08:31 - 00027840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-08-09 17:56 - 2015-06-22 08:30 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-08-09 17:54 - 2015-08-09 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iFreeUp
2015-08-09 17:47 - 2015-08-09 17:47 - 64294912 _____ C:\Windows\system32\config\COMPONENTS.iobit
2015-08-09 17:47 - 2015-08-09 17:47 - 05189632 _____ C:\Windows\system32\config\DRIVERS.iobit
2015-08-09 17:32 - 2015-06-04 15:28 - 00961192 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00062304 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00064352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-08-09 17:32 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-08-09 17:24 - 2015-08-09 17:43 - 873116238 _____ C:\Users\hendr_000\Downloads\metasploitable-linux-2.0.0.zip
2015-08-09 17:23 - 2015-08-10 15:46 - 00000000 ____D C:\ProgramData\VsTelemetry
2015-08-09 17:23 - 2015-08-09 17:23 - 03099760 _____ (Microsoft Corporation) C:\Users\hendr_000\Downloads\vs_community.exe
2015-08-08 19:48 - 2015-08-08 19:48 - 00000000 ____D C:\Program Files\Registrar Registry Manager
2015-08-08 19:45 - 2015-08-08 19:45 - 05032752 _____ (Resplendence Software Projects Sp. ) C:\Users\hendr_000\Downloads\RegistrarHomeV7.exe
2015-08-08 18:39 - 2015-08-09 19:24 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-08-08 18:39 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-08 18:39 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-08 18:39 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-08 18:39 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-08 18:39 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-08 18:39 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-08-08 18:39 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-08 18:39 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-08 18:39 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-08 18:39 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-08 18:39 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-08 18:39 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-08 18:38 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-08 18:38 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-07 17:20 - 2015-08-07 17:20 - 00052736 _____ C:\Users\hendr_000\Desktop\CopyBootLog.exe
2015-08-07 15:41 - 2015-08-07 15:41 - 00000000 ____D C:\Users\hendr_000\Downloads\geek_13346
2015-08-07 14:07 - 2015-08-07 14:07 - 00000000 ____D C:\Users\hendr_000\Downloads\gcc-5.1.0
2015-08-06 19:46 - 2015-08-06 20:38 - 00075139 _____ C:\Users\hendr_000\Desktop\Storereparatur.log
2015-08-06 18:26 - 2015-08-06 18:26 - 00000000 ____D C:\RefreshImage
2015-08-02 14:06 - 2015-08-02 14:07 - 07407166 _____ C:\Users\hendr_000\Downloads\AdventureMap ZeFlu.zip
2015-08-01 11:12 - 2015-08-01 11:12 - 00000440 _____ C:\Users\hendr_000\Downloads\App-Fix.zip
2015-08-01 11:00 - 2015-08-01 11:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-08-01 10:59 - 2015-08-01 10:59 - 00000000 ____D C:\Program Files\Realtek
2015-08-01 10:58 - 2000-01-01 02:00 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2015-08-01 10:58 - 2000-01-01 02:00 - 04460760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-08-01 10:58 - 2000-01-01 02:00 - 03262184 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02907864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-08-01 10:58 - 2000-01-01 02:00 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01413776 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 01104040 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00943784 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00856992 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00837776 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00734376 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00654480 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00544400 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2015-08-01 10:58 - 2000-01-01 02:00 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00454288 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00435344 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00369296 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00329360 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00329360 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00250536 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00213432 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2015-08-01 10:58 - 2000-01-01 02:00 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 72113152 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-08-01 10:57 - 2000-01-01 02:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 05706688 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 03218800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02847448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02532056 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 02036495 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-08-01 10:57 - 2000-01-01 02:00 - 01739992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00168816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-08-01 10:57 - 2000-01-01 02:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 12975360 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 12834736 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 05234952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 02789808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01499984 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01365768 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00995120 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00979280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-08-01 10:56 - 2000-01-01 02:00 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 07087448 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 06242576 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 03182104 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01933584 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01559744 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00336144 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00328816 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00284944 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-08-01 10:55 - 2000-01-01 02:00 - 00096568 _____ C:\Windows\system32\audioLibVc.dll
2015-08-01 10:54 - 2000-01-01 02:00 - 00560328 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-08-01 10:54 - 2000-01-01 02:00 - 00109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-07-31 17:00 - 2015-07-31 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-07-31 16:59 - 2015-08-01 10:52 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Raptr
2015-07-31 16:59 - 2015-07-31 17:00 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-07-31 16:49 - 2015-07-31 16:51 - 00192816 _____ C:\Users\hendr_000\Downloads\raptr_installer.exe
2015-07-31 14:18 - 2015-08-06 19:03 - 00004270 _____ C:\Users\hendr_000\Desktop\FixMetro.cmd
2015-07-31 10:17 - 2015-07-31 10:17 - 00000308 _____ C:\Users\hendr_000\Desktop\MetroTwit.appref-ms
2015-07-31 10:17 - 2015-07-31 10:17 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pixel Tucker Pty Ltd
2015-07-30 19:07 - 2015-07-30 20:49 - 2147484783 _____ C:\Users\hendr_000\Downloads\kali-linux-1.1.0a-i386.iso
2015-07-29 20:55 - 2015-07-29 20:58 - 19302676 _____ C:\Users\hendr_000\Downloads\CommunityShowcaseNaturalLandscapes3.themepack
2015-07-29 20:48 - 2015-07-29 20:48 - 00536906 _____ C:\Users\hendr_000\Downloads\apps.diagcab
2015-07-29 20:48 - 2015-07-29 20:48 - 00423962 _____ C:\Users\hendr_000\Downloads\AppsDiagnostic.diagcab
2015-07-29 17:25 - 2013-06-18 15:12 - 00090304 _____ (Sysinternals) C:\Windows\system32\strings.exe
2015-07-29 17:24 - 2013-06-18 15:12 - 00090304 _____ (Sysinternals) C:\Users\hendr_000\Downloads\strings.exe
2015-07-29 17:23 - 2015-07-29 17:23 - 00050298 _____ C:\Users\hendr_000\Downloads\Strings.zip
2015-07-29 17:13 - 2015-07-29 17:13 - 00000000 ____D C:\Users\hendr_000\AppData\Local\GWX
2015-07-29 17:12 - 2015-07-29 17:12 - 00000000 ____D C:\Users\hendr_000\Downloads\win10fix_full_german.bat_
2015-07-29 17:11 - 2015-07-29 17:11 - 00002929 _____ C:\Users\hendr_000\Downloads\win10fix_full_german.bat_.zip
2015-07-29 16:55 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-07-29 16:55 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-07-29 16:54 - 2015-06-09 20:27 - 00411133 _____ C:\Windows\system32\ApnDatabase.xml
2015-07-29 16:53 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-07-29 16:53 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-07-29 16:53 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-07-29 16:52 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-07-29 16:52 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-07-29 16:52 - 2015-06-10 00:39 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-07-29 16:52 - 2015-06-10 00:39 - 00053248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-07-29 16:52 - 2015-06-10 00:38 - 01201664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-07-28 16:43 - 2015-07-28 16:43 - 00001011 _____ C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastCopy.lnk
2015-07-28 16:43 - 2015-07-28 16:43 - 00000981 _____ C:\Users\hendr_000\Desktop\FastCopy.lnk
2015-07-28 16:43 - 2015-07-28 16:43 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\FastCopy
2015-07-28 16:43 - 2015-07-28 16:43 - 00000000 ____D C:\Program Files\FastCopy
2015-07-27 18:36 - 2015-07-27 18:37 - 04954736 _____ (Microsoft Corporation) C:\Users\hendr_000\Downloads\WindowsSetupBox.exe
2015-07-27 18:10 - 2015-07-27 18:10 - 00060965 _____ C:\Users\hendr_000\Downloads\pkeyuibx_v1.5.0.zip
2015-07-27 18:08 - 2015-07-27 18:08 - 01198368 _____ C:\Users\hendr_000\Downloads\Windows Product Key Viewer - CHIP-Installer.exe
2015-07-27 18:02 - 2015-07-27 18:02 - 01198368 _____ C:\Users\hendr_000\Downloads\Windows 8 1 Setup Tool - CHIP-Installer.exe
2015-07-26 17:15 - 2015-07-26 17:15 - 00000000 ____D C:\Users\hendr_000\Downloads\rawwritewin-0.7
2015-07-26 16:33 - 2015-07-26 16:33 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-07-26 16:30 - 2015-07-26 17:14 - 00000000 ____D C:\Users\hendr_000\Desktop\ownOS
2015-07-26 16:27 - 2015-07-26 16:27 - 00214786 _____ C:\Users\hendr_000\Downloads\rawwritewin-0.7.zip
2015-07-26 16:27 - 2015-07-26 16:27 - 00000000 ____D C:\rawrite
2015-07-26 16:24 - 2015-07-26 16:25 - 00000000 ____D C:\NASM 2.11.08
2015-07-26 16:23 - 2015-07-26 16:23 - 00802892 _____ C:\Users\hendr_000\Downloads\nasm-2.11.08-installer.exe
2015-07-26 16:21 - 2015-07-26 16:22 - 01398894 _____ C:\Users\hendr_000\Downloads\nasm-2.11.08.zip
2015-07-25 21:07 - 2015-07-25 21:41 - 00428047 _____ C:\Users\hendr_000\Desktop\FastCopy211_x64.zip
2015-07-25 21:07 - 2015-07-25 21:07 - 00427277 _____ C:\Windows\SysWOW64\FastCopy211_x64.zip
2015-07-25 21:05 - 2015-07-25 21:05 - 00516664 _____ ( ) C:\Users\hendr_000\Downloads\FastCopy211_x64_CB-DL-Manager.exe
2015-07-25 16:55 - 2015-07-25 16:55 - 00000000 _____ C:\Windows\SysWOW64\InstallLocation
2015-07-24 14:03 - 2015-07-24 14:03 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Steam
2015-07-24 14:03 - 2015-07-24 14:03 - 00000000 ____D C:\Users\hendr_000\AppData\Local\CEF
2015-07-23 19:02 - 2015-07-31 10:26 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-23 19:02 - 2015-07-23 19:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-23 19:00 - 2015-07-23 19:01 - 01476720 _____ C:\Users\hendr_000\Downloads\SteamSetup.exe
2015-07-23 18:25 - 2015-07-23 18:35 - 606076928 _____ C:\Users\hendr_000\Downloads\ubuntu-14.04.2-server-i386.iso
2015-07-23 18:21 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-23 18:10 - 2015-07-23 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2015-07-23 18:10 - 2015-07-23 18:10 - 00000000 ____D C:\Program Files\Oracle
2015-07-23 18:10 - 2015-07-09 12:09 - 00958736 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2015-07-23 18:10 - 2015-07-09 12:09 - 00138904 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2015-07-21 14:11 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-21 14:10 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-21 14:10 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-21 14:10 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-21 14:10 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-21 14:10 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-21 14:10 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-21 14:09 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-21 14:09 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-21 14:09 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-21 14:09 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-21 14:09 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-21 14:09 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-21 14:09 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-21 14:09 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-21 14:09 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-21 14:09 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-21 14:09 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-21 14:09 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-21 14:09 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-21 14:07 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-21 14:07 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-21 14:07 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-21 14:07 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-21 14:07 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-21 14:07 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-21 14:07 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-21 12:56 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-21 12:56 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-21 12:55 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-21 12:55 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-21 12:53 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-21 12:52 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-21 12:52 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-21 12:52 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-21 12:52 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-21 12:52 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-21 12:51 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-21 12:51 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-21 12:51 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-21 12:51 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-21 12:51 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-21 12:51 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-21 12:51 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-21 12:51 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-21 12:51 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-21 12:51 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-21 12:51 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-21 12:51 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-21 12:51 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-21 12:51 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-21 12:51 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-21 12:51 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-21 12:51 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-21 12:51 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-21 12:51 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-21 12:51 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-21 12:51 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-21 12:51 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-21 12:51 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-21 12:51 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-21 12:51 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-21 12:51 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-21 12:51 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-21 12:51 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-21 12:51 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-21 12:51 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-21 12:51 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-21 12:51 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-21 12:51 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-21 12:48 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-21 12:48 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-21 12:48 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-21 12:48 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-21 12:47 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-21 12:47 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-21 12:22 - 2015-07-21 12:45 - 00000000 ____D C:\Users\hendr_000\AppData\Local\ftblauncher
2015-07-21 12:22 - 2015-07-21 12:37 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\ftblauncher
2015-07-21 12:20 - 2015-07-21 12:21 - 06628862 _____ () C:\Users\hendr_000\Downloads\FTB_Launcher.exe

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-12 16:01 - 2015-06-07 17:02 - 00000000 ____D C:\FRST
2015-08-12 16:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-12 15:48 - 2014-01-25 17:33 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-532561150-3242956754-1626305917-1001
2015-08-12 15:43 - 2014-08-23 12:55 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\Notepad++
2015-08-12 15:43 - 2014-08-23 12:55 - 00000000 ____D C:\Program Files (x86)\Notepad++
2015-08-12 15:39 - 2014-01-27 17:50 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-12 15:32 - 2015-05-30 06:36 - 01746388 _____ C:\Windows\WindowsUpdate.log
2015-08-12 15:05 - 2015-04-08 14:50 - 00005188 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for ARBEITSRECHNER-hendrik_2002 Arbeitsrechner
2015-08-12 15:04 - 2014-01-25 17:44 - 00000000 __RDO C:\Users\hendr_000\SkyDrive
2015-08-12 15:01 - 2015-01-29 19:14 - 00000000 ____D C:\ProgramData\VMware
2015-08-12 15:01 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-11 21:00 - 2014-02-23 22:06 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2015-08-11 20:22 - 2014-04-02 09:03 - 00000000 ____D C:\AdwCleaner
2015-08-11 20:13 - 2014-09-06 11:25 - 00000000 ____D C:\Users\Administrator
2015-08-11 20:13 - 2014-08-24 11:19 - 00000000 ____D C:\Users\Niklas Steinmetz.HendriksPodpal
2015-08-11 20:13 - 2014-02-23 22:13 - 00000000 ____D C:\Users\Dirk
2015-08-11 20:13 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Resources
2015-08-11 18:26 - 2015-06-06 13:31 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-11 18:25 - 2015-06-06 13:30 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-10 18:36 - 2014-06-21 18:57 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\.minecraft
2015-08-10 18:36 - 2014-02-23 22:13 - 00000000 ____D C:\Users\hendr_000
2015-08-10 18:05 - 2015-06-24 19:06 - 00057216 _____ C:\Users\hendr_000\Desktop\loaded_drivers.txt
2015-08-10 16:11 - 2015-01-29 19:22 - 00000000 ____D C:\Users\hendr_000\AppData\Local\VMware
2015-08-10 16:05 - 2015-01-29 19:22 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\VMware
2015-08-09 22:14 - 2013-08-22 16:44 - 00396520 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-09 22:10 - 2015-06-30 10:08 - 00000286 _____ C:\Windows\Tasks\ASC8_SkipUac_hendrik_2002.job
2015-08-09 21:54 - 2014-02-23 21:45 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-09 21:52 - 2015-01-21 12:40 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-09 21:43 - 2014-12-06 13:11 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2015-08-09 21:22 - 2014-03-07 20:13 - 00000000 ____D C:\Users\hendr_000\.android
2015-08-09 19:40 - 2015-05-12 17:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-08-09 19:40 - 2014-12-06 13:23 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-08-09 19:38 - 2015-05-12 17:44 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2015-08-09 19:05 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-09 18:53 - 2015-05-12 17:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-08-09 18:47 - 2015-05-12 17:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-08-09 18:27 - 2015-05-12 17:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer
2015-08-09 18:14 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-09 18:03 - 2015-03-09 20:30 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Eclipse
2015-08-09 17:53 - 2015-02-04 18:04 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\IObit
2015-08-09 17:53 - 2015-02-04 18:03 - 00000000 ____D C:\Program Files (x86)\IObit
2015-08-09 17:50 - 2015-01-30 12:12 - 00000000 ____D C:\Users\hendr_000\VirtualBox VMs
2015-08-09 17:50 - 2015-01-30 12:11 - 00000000 ____D C:\Users\hendr_000\.VirtualBox
2015-08-09 17:47 - 2014-02-06 21:33 - 00246272 ___SH C:\Users\hendr_000\Desktop\Thumbs.db
2015-08-09 17:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF
2015-08-08 20:08 - 2015-04-07 08:46 - 00000000 ____D C:\Users\hendr_000\workspace_projects
2015-08-08 19:58 - 2014-12-10 21:15 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-08 19:58 - 2014-07-31 18:06 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-08 19:55 - 2014-02-09 10:06 - 00000000 ____D C:\Users\hendr_000\AppData\Local\CrashDumps
2015-08-07 18:28 - 2015-05-12 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
2015-08-06 18:29 - 2014-02-23 22:13 - 00012102 _____ C:\Windows\diagerr.xml
2015-08-06 18:29 - 2014-02-23 22:13 - 00011231 _____ C:\Windows\diagwrn.xml
2015-08-05 20:13 - 2015-06-07 16:59 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-08-05 16:05 - 2015-06-06 13:56 - 00000000 ____D C:\ProgramData\HitmanPro
2015-08-02 19:14 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-08-01 11:02 - 2013-10-08 16:45 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-07-31 18:02 - 2014-02-23 22:06 - 00000000 ____D C:\AMD
2015-07-31 14:12 - 2014-07-27 17:04 - 00000000 ____D C:\Users\hendr_000\.eclipse
2015-07-31 10:28 - 2015-01-29 19:28 - 00000000 ____D C:\Users\hendr_000\Documents\Virtual Machines
2015-07-31 10:20 - 2014-03-22 10:15 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Deployment
2015-07-30 21:48 - 2013-08-22 15:25 - 00786432 ___SH C:\Windows\system32\config\BBI
2015-07-30 16:49 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-07-29 18:34 - 2014-01-25 17:39 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Apps\2.0
2015-07-25 21:05 - 2015-04-09 11:57 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-25 17:32 - 2014-01-25 17:00 - 00000000 ____D C:\Users\hendr_000\AppData\Local\Packages
2015-07-24 16:28 - 2014-12-24 19:48 - 00000000 ____D C:\Program Files (x86)\Minecraft
2015-07-24 16:27 - 2015-01-14 12:48 - 00000000 ____D C:\Users\hendr_000\.gimp-2.8
2015-07-24 14:10 - 2015-02-04 18:03 - 00000000 ____D C:\ProgramData\IObit
2015-07-23 21:37 - 2015-04-09 11:57 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-07-23 20:17 - 2014-02-06 20:36 - 00000000 ____D C:\Windows\system32\MRT
2015-07-23 19:20 - 2014-02-11 19:35 - 00000000 ____D C:\Users\hendr_000\AppData\Roaming\FileZilla
2015-07-23 18:12 - 2015-06-09 16:53 - 00000000 ____D C:\Users\hendr_000\Downloads\forge
2015-07-23 18:11 - 2015-06-09 16:57 - 00000000 ____D C:\Users\hendr_000\Downloads\setups
2015-07-21 14:09 - 2014-01-25 17:21 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-07-21 14:08 - 2014-12-23 17:32 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-07-21 12:50 - 2014-03-29 20:01 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-21 12:50 - 2014-03-29 20:01 - 00003884 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-21 12:50 - 2014-03-29 20:01 - 00001148 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-21 12:50 - 2014-03-29 20:01 - 00001144 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-21 12:36 - 2014-01-25 17:34 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-07-21 12:28 - 2014-03-07 21:33 - 00000000 ____D C:\ProgramData\Oracle
2015-07-21 12:25 - 2014-12-24 21:28 - 00110688 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2015-07-21 12:25 - 2014-12-24 21:27 - 00000000 ____D C:\Program Files\Java
2015-07-13 23:10 - 2015-03-14 09:02 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2015-03-14 09:02 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-02-26 20:51 - 2015-02-26 20:51 - 0000000 ___RH () C:\Users\hendr_000\AppData\Roaming\b4d6e8f4ed70928182ebe608f6b39bab2
2015-05-15 12:12 - 2015-05-15 12:12 - 0000046 _____ () C:\Users\hendr_000\AppData\Roaming\Camdata.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0000408 _____ () C:\Users\hendr_000\AppData\Roaming\CamLayout.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0000408 _____ () C:\Users\hendr_000\AppData\Roaming\CamShapes.ini
2015-05-15 12:12 - 2015-05-15 12:12 - 0004536 _____ () C:\Users\hendr_000\AppData\Roaming\CamStudio.cfg
2014-09-01 10:18 - 2014-09-01 10:18 - 0002086 _____ () C:\Users\hendr_000\AppData\Roaming\UIZJU
2015-05-15 12:11 - 2015-05-15 12:11 - 0000096 _____ () C:\Users\hendr_000\AppData\Roaming\version2.xml
2014-03-07 21:43 - 2014-12-23 16:55 - 0000113 _____ () C:\Users\hendr_000\AppData\Roaming\WB.CFG
2014-12-08 18:03 - 2014-12-08 18:03 - 0202370 _____ () C:\Users\hendr_000\AppData\Local\debuggee.mdmp
2015-01-29 21:01 - 2015-07-01 11:23 - 0000600 _____ () C:\Users\hendr_000\AppData\Local\PUTTY.RND
2015-06-22 17:08 - 2015-06-22 17:08 - 0002836 _____ () C:\Users\hendr_000\AppData\Local\recently-used.xbel
2014-12-26 12:55 - 2015-04-18 07:59 - 0007595 _____ () C:\Users\hendr_000\AppData\Local\Resmon.ResmonCfg
2015-01-27 09:36 - 2015-01-27 09:36 - 0000000 _____ () C:\Users\hendr_000\AppData\Local\{A9E8EC64-9A12-4DF0-8909-6F0BE58BB854}
2015-03-22 17:22 - 2015-03-22 17:22 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip
2015-06-06 14:28 - 2015-06-06 14:28 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\Administrator\AppData\Local\Temp\borlndlm.dll
C:\Users\Dirk\AppData\Local\Temp\{9AB2D6BA-D314-4579-92EB-5166BD3BD792}-35.0.1916.153_chrome_installer.exe
C:\Users\hendr_000\AppData\Local\Temp\npp.6.8.1.Installer.exe
C:\Users\hendr_000\AppData\Local\Temp\Quarantine.exe
C:\Users\hendr_000\AppData\Local\Temp\sqlite3.dll
C:\Users\hendr_000\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-08-06 17:13

==================== Ende von Ergebnis ============================


Wandalensalz 12.08.2015 15:10

Addtion.txt:

Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:11-08-2015 02
durchgeführt von hendrik_2002 (2015-08-12 16:04:29)
Gestartet von C:\Users\hendr_000\Desktop\Logs
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-532561150-3242956754-1626305917-500 - Administrator - Enabled) => C:\Users\Administrator
Dirk (S-1-5-21-532561150-3242956754-1626305917-1004 - Administrator - Enabled) => C:\Users\Dirk
Dummy-Account (S-1-5-21-532561150-3242956754-1626305917-1013 - Limited - Enabled)
Gast (S-1-5-21-532561150-3242956754-1626305917-501 - Limited - Disabled)
Hendrik2002 (S-1-5-21-532561150-3242956754-1626305917-1017 - Administrator - Enabled)
hendrik_2002 (S-1-5-21-532561150-3242956754-1626305917-1001 - Administrator - Enabled) => C:\Users\hendr_000
HomeGroupUser$ (S-1-5-21-532561150-3242956754-1626305917-1006 - Limited - Enabled)
Katja (S-1-5-21-532561150-3242956754-1626305917-1009 - Administrator - Enabled)
Niklas Steinmetz (S-1-5-21-532561150-3242956754-1626305917-1008 - Limited - Enabled) => C:\Users\Niklas Steinmetz.HendriksPodpal

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

64 Bit HP CIO Components Installer (Version: 7.2.4 - Hewlett-Packard) Hidden
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated)
AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2022 - Acer Incorporated)
Adobe After Effects 7.0 (HKLM-x32\...\Adobe After Effects 7.0) (Version: 7.0.0.244 - Adobe Systems, Inc.)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\{F22C3C05-B1D9-47FF-AA17-4F9DCBFE850F}) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.194 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Premiere Pro 2.0 (HKLM-x32\...\Adobe Premiere Pro 2.0) (Version: 2.000.000 - Adobe Systems, Inc.)
Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.3.0 - IObit)
AMD Catalyst Install Manager (HKLM\...\{ACF4E7FE-650D-9BD7-BAE5-1AD061F40F69}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
Application Insights Tools for Visual Studio 2015 (x32 Version: 3.3.1 - Microsoft Corporation) Hidden
Ashampoo WinOptimizer 2015 v.11.00.50 (HKLM-x32\...\{4209F371-3276-A8F7-B851-845A83732AB4}_is1) (Version: 11.00.50 - Ashampoo GmbH & Co. KG)
Assassin's Creed Revelations 1.03 (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.03 - Ubisoft)
Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden
Bandicam (HKLM-x32\...\Bandicam) (Version: 2.1.2.740 - Bandisoft.com)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - Bandisoft.com)
Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden
Blend for Visual Studio SDK for Windows Phone 8.0 (x32 Version: 3.0.30924.0 - Microsoft Corporation) Hidden
Blender (HKLM\...\Blender) (Version: 2.73a - Blender Foundation)
Borland C++Builder 6 (HKLM-x32\...\{2864C41B-EF2D-4640-95A2-526276524519}) (Version: 6.0 - Borland Software Corporation)
Brackets (HKLM-x32\...\{4BCC5124-095C-4871-8562-55FA29DD8773}) (Version: 1.1 - brackets.io)
Build Tools - amd64 (Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools - x86 (x32 Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools for Windows 10 (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Build Tools Language Resources - amd64 (Version: 12.0.31010 - Microsoft Corporation) Hidden
Build Tools Language Resources - x86 (x32 Version: 12.0.31010 - Microsoft Corporation) Hidden
Buildtools für Windows 10 - DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated)
clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
CodedUITest81 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
CodedUITestUAP (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Craften Terminal 4.1.1 (HKLM-x32\...\{4e7c3936-7c06-4ef0-928b-c5d92f372578}_is1) (Version: 4.1.1 - Craften.de)
Crossfire Europe (HKLM-x32\...\Crossfire Europe) (Version: 1.172 - SG Europe)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Devenv-Ressourcen für Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Dotfuscator and Analytics Community Edition 5.18.1 (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
Dotfuscator and Analytics Community Edition Language Pack 5.18.1 de-DE (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden
Entity Framework 6.1.3 Tools  for Visual Studio 2015 (HKLM-x32\...\{1A8A9739-BAD7-491F-B5B9-A79A2B965422}) (Version: 14.0.40302.0 - Microsoft Corporation)
Epic Games Launcher (HKLM\...\{84438A71-40ED-4E6F-9C7E-58FE0F61F692}) (Version: 1.1.28.0 - Epic Games, Inc.)
Erforderliche Komponenten für SSDT  (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
FileZilla (remove only) (HKLM-x32\...\FileZilla) (Version:  - )
FileZilla Client 3.10.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse)
Firefox Developer Edition 40.0a2 (x86 en-US) (HKLM-x32\...\Firefox Developer Edition 40.0a2 (x86 en-US)) (Version: 40.0a2 - Mozilla)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Pascal 2.6.4 (HKLM-x32\...\FreePascal_is1) (Version:  - Free Pascal Team)
Gemeinsam genutzte Microsoft Azure-Komponenten für Visual Studio 2015 Sprachpaket (DEU) - v1.5 (x32 Version: 1.5.30619.1602 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Git version 1.9.5-preview20150319 (HKLM-x32\...\Git_is1) (Version: 1.9.5-preview20150319 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version:  - EFD Software)
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.242 - SurfRight B.V.)
IDE Tools for Windows 10 (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated)
IDE-Tools für Windows 10 - DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
iFreeUp 1.0 (HKLM-x32\...\iFreeUp_is1) (Version: 1.0.10 - IObit)
IIS 10.0 Express (HKLM\...\{5984D8DA-C1AF-4284-9C88-D7150425B315}) (Version: 10.0.1734 - Microsoft Corporation)
IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version:  - )
IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version:  - )
Intellisense Lang Pack Mobile Extension SDK 10.0.10240.0 (x32 Version: 10.0.10240.0 - Microsoft Corporation) Hidden
Java 7 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417025F0}) (Version: 7.0.250 - Oracle)
Java 7 Update 75 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417075FF}) (Version: 7.0.750 - Oracle)
Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation)
Java SE Development Kit 7 Update 75 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170750}) (Version: 1.7.0.750 - Oracle)
Java SE Development Kit 8 Update 31 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180310}) (Version: 8.0.310.13 - Oracle Corporation)
Kits Configuration Installer (x32 Version: 10.0.26624 - Microsoft) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated)
LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden
LocalESPCui for de-de (x32 Version: 8.59.29989 - Microsoft) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden
Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Metasploit (HKLM-x32\...\Metasploit 4.11.1) (Version: 4.11.1 - Rapid7)
MetroTwit (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\6d9570ab26892611) (Version: 1.2.0.1 - Pixel Tucker Pty Ltd)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{B941AFB4-8851-33A1-9E72-0C33D463C41C}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4737.1003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\OneDriveSetup.exe) (Version: 17.3.5907.0716 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities  (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client  (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 DEU  (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - DEU (14.0.50616.0) (HKLM-x32\...\{FA604873-01A0-4834-AF87-418534E465BB}) (Version: 14.0.50616.0 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects  (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 Transact-SQL ScriptDom  (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server*2014 T-SQL Language Service  (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Community 2015 (HKLM-x32\...\{5c2b89b0-08cc-492f-b086-21e4d6ae7be4}) (Version: 14.0.23107.10 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation)
Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM\...\{63967E7E-5D53-42FA-A7B2-DC50FB0F976F}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM-x32\...\{2ADB6B9D-83C6-494E-B8AE-E815956A4670}) (Version: 12.0.2402.11 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{02BAAFC5-4E16-42E6-A9F6-8DDE0B7ED3B8}) (Version: 1.0.0.0 - Mojang)
Mit C# erstellte geräteübergreifende Hybrid-Apps - Vorlagen - DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 36.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0 (x86 de)) (Version: 36.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0 - Mozilla)
Mozilla Thunderbird 24.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.3.0 (x86 de)) (Version: 24.3.0 - Mozilla)
MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Nidhogg v1.0 (HKLM-x32\...\Nidhogg v1.01.0) (Version: 1.0 - Friends in War)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.1 - Notepad++ Team)
OEM Application Profile (HKLM-x32\...\{276FD4A2-030F-8A24-7DFE-9B1384131BCD}) (Version: 1.00.0000 - Ihr Firmenname)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer)
Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2008 - Acer)
Opera Stable 30.0.1835.59 (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\Opera 30.0.1835.59) (Version: 30.0.1835.59 - Opera Software)
Oracle VM VirtualBox 5.0.0 (HKLM\...\{FCD0B365-2189-45F3-9AF2-2BCED86C121A}) (Version: 5.0.0 - Oracle Corporation)
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM-x32\...\{3F514FDC-F0F2-3B99-86D6-F7B3A2679B39}) (Version: 4.5.51209 - Microsoft Corporation)
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6 (Deutsch) (HKLM-x32\...\{7227EFF8-BC26-44D4-B91D-969A82DBDF4A}) (Version: 4.6.00081 - Microsoft Corporation)
PreEmptive Analytics Client German Language Pack (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation)
Projekt- und Elementvorlagen für Visual Studio Community 2015 – DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Projekt- und Elementvorlagen für Visual Studio Express 2015 für Windows 10 – DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Projekt- und Elementvorlagen für Visual Studio Professional 2015 – DEU (x32 Version: 14.0.23121 - Microsoft Corporation) Hidden
Python 3.4.3 (HKLM-x32\...\{CCD588A7-8D55-49F1-A30C-47FAB40889ED}) (Version: 3.4.16490 - Python Software Foundation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.224 - Qualcomm Atheros Communications)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.20 - Qualcomm Atheros Inc.)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.55 - Qualcomm Atheros)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7509 - Realtek Semiconductor Corp.)
Registrar Registry Manager 7.75 (HKLM\...\RegistrarHome_is1) (Version:  - Resplendence Software Projects Sp.)
Resource Hacker Version 4.0.0 (HKLM-x32\...\ResourceHacker_is1) (Version:  - )
Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Secunia PSI (3.0.0.10004) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.10004 - Secunia)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Silent Hunter 4 Wolves of the Pacific (HKLM-x32\...\{0D005F09-A5F4-473B-A901-5735C6AF5628}) (Version: 1.00.0000 - Ubisoft)
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
System Explorer 6.4.2 (HKLM-x32\...\{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1) (Version:  - Mister Group)
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
TIPP10 Version 2.1.0 (HKLM-x32\...\TIPP10_is1) (Version:  - (c) 2006-2011, Tom Thielicke IT Solutions)
TypeScript Power Tool (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.5.4.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0 (HKLM-x32\...\{4cde0c8c-47b3-448f-babf-fe5d392432a6}) (Version: 1.5.23128.0 - Microsoft Corporation)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
UltraUXThemePatcher (HKLM-x32\...\UltraUXThemePatcher) (Version: 2.5.6.0 - Manuel Hoefs (Zottel))
Unity (HKLM-x32\...\Unity) (Version: 5.0.1f1 - Unity Technologies ApS)
Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Visual C++ für Mobile-Entwicklung (Android-Unterstützung) (HKLM-x32\...\{fd8b6372-b8b3-4a14-bb21-fbc5cb94f7ac}) (Version: 14.0.23027.0 - Microsoft Corporation)
Visual C++ für Mobile-Entwicklung (iOS-Unterstützung) (HKLM-x32\...\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}) (Version: 14.0.23027.0 - Microsoft Corporation)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VMware Player (HKLM-x32\...\VMware_Player) (Version: 7.1.2 - VMware, Inc)
VMware Player (Version: 7.1.2 - VMware, Inc.) Hidden
VNC Server 5.2.3 (HKLM\...\{0D2201F0-2E7B-4C89-8C5D-03D3F5BB5042}) (Version: 5.2.3 - RealVNC Ltd)
VNC Viewer 5.2.3 (HKLM\...\{8824CB84-60DF-4CBC-AB3A-7C5AB2A41F31}) (Version: 5.2.3 - RealVNC Ltd)
WCF Data Services 5.6.4 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF Data Services Tools for Microsoft Visual Studio 2015 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden
WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation)
Webocton - Scriptly 0.8.95.6 (HKLM-x32\...\Webocton - Scriptly_is1) (Version: 0.8.95.6 - Webocton)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.26624 (HKLM-x32\...\{e7a0c8b6-b0e9-41e2-8a0a-a6784f88d1d4}) (Version: 10.0.26624 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies)
WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Wireshark 1.12.3 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.12.3 - The Wireshark developer community, hxxp://www.wireshark.org)
Wise Registry Cleaner 8.61 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 8.61 - WiseCleaner.com, Inc.)
Xamarin (HKLM-x32\...\{B6F4249F-5053-43D5-BA37-D942230C825B}) (Version: 3.11.816.0 - Xamarin)
XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-5 - Bitnami)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Wiederherstellungspunkte =========================

09-08-2015 17:28:59 Microsoft Visual Studio Community 2015
09-08-2015 17:33:34 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
09-08-2015 17:37:30 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
09-08-2015 17:41:56 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026
09-08-2015 17:44:22 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
09-08-2015 17:47:02 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
09-08-2015 18:16:58 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026
09-08-2015 19:56:48 TypeScript Tools for Microsoft Visual Studio 2015 1.5.4.0
09-08-2015 20:03:53 Update for Microsoft Visual Studio 2015 (KB3073097)
09-08-2015 20:28:43 Windows Software Development Kit - Windows 10.0.26624
09-08-2015 21:37:52 Microsoft Visual Studio 2015 Tools für Windows 10 (Technical Preview)
09-08-2015 21:47:29 Update for Microsoft Visual Studio 2015 (KB3073097)
09-08-2015 21:48:46 Visual C++ für Mobile-Entwicklung (iOS-Unterstützung)
09-08-2015 21:50:23 Visual C++ für Mobile-Entwicklung (Android-Unterstützung)
11-08-2015 20:33:22 JRT Pre-Junkware Removal

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {07B9F40D-4E63-4DAF-8FD6-4EE67D558E0E} - System32\Tasks\{C7EAF7A5-FBDB-4A82-91B9-18268A1FDEE1} => Chrome.exe hxxp://ui.skype.com/ui/0/6.3.73.105.457/de/abandoninstall?page=tsMain
Task: {09F3DD2C-71B3-4A85-9364-C6386EA7E94C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {2676A993-D66B-4448-A860-F9763BEEDE42} - System32\Tasks\Opera scheduled Autoupdate 1426179695 => C:\Users\hendr_000\AppData\Local\Programs\Opera\launcher.exe [2015-06-10] (Opera Software)
Task: {33A65D12-4ED9-434B-96F9-68D1F9241A8B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-532561150-3242956754-1626305917-1001
Task: {395A679E-F1C7-4FA0-A08F-2B1F3D7E8E0F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {3C052D58-9ADE-4287-94F2-CA7AEFE0D177} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {45BB8FB7-E03E-47DC-9513-D76090D256DB} - System32\Tasks\{2EFDEB36-276A-48F3-BFAA-5F39F38EB409} => pcalua.exe -a C:\Users\hendr_000\Desktop\Forge_Server\forge-1.8-11.14.0.1285-1.8-installer-win.exe -d C:\Users\hendr_000\Desktop\Forge_Server
Task: {5960B03A-15EA-446B-A907-4FACA2EF3BDD} - System32\Tasks\{AA50E2BC-3878-43CC-9F92-EAF47C08AB82} => pcalua.exe -a C:\Users\hendr_000\Downloads\forge-1.7.10-10.13.3.1355-1.7.10-installer-win.exe -d C:\Users\hendr_000\Downloads
Task: {66C3A4D9-DEB8-4C5B-A1B7-F5C5B803BEA4} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] ()
Task: {6FE0E8CB-D288-41EA-BA1E-74239258B658} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.)
Task: {74768E11-5380-4F57-93C3-438B4A630F6A} - System32\Tasks\ASC8_SkipUac_hendrik_2002 => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2015-06-16] (IObit)
Task: {BB059E76-F9BF-44C9-B6ED-13F7B3CEF254} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation)
Task: {C426D609-BEA0-4503-A8F1-8EBBCE15C292} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2015-06-10] (IObit)
Task: {CB016BC7-2B36-4262-A1E8-B434854BFE31} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation)
Task: {D2174D06-84F3-46A9-9998-A0B5934A7B07} - System32\Tasks\Microsoft Office 15 Sync Maintenance for ARBEITSRECHNER-hendrik_2002 Arbeitsrechner => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-06-02] (Microsoft Corporation)
Task: {E2F4864D-34CE-4271-9B2D-F92D332804DB} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {E95F795D-D6BF-41F2-95CF-E279E4F0C080} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation)
Task: {E9D16D5F-9981-4966-AF14-EC8FFEC0427B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-29] (Google Inc.)
Task: {EC96A4FB-11A6-4682-82A5-ADD27F0D47CA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ASC8_SkipUac_hendrik_2002.job => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\UIZJU.job => C:\Users\hendr_000\AppData\Roaming\UIZJU.exe <==== ACHTUNG

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2014-06-20 13:15 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2013-10-08 17:14 - 2013-02-20 22:58 - 00111176 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2015-03-02 16:43 - 2015-03-02 16:43 - 00099288 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2015-08-12 15:32 - 2015-08-12 15:32 - 00852684 _____ () C:\Users\hendr_000\Desktop\SecurityCheck.exe
2015-06-30 10:04 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\sqlite3.dll
2015-02-04 18:03 - 2014-12-18 21:04 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2015-05-31 07:59 - 2015-05-31 07:59 - 01301696 _____ () C:\Program Files (x86)\VMware\VMware Player\libxml2.dll
2015-06-30 10:06 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madExcept_.bpl
2015-06-30 10:06 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madBasic_.bpl
2015-06-30 10:06 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madDisAsm_.bpl
2015-08-09 17:53 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\iFreeUp\madExcept_.bpl
2015-08-09 17:53 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\iFreeUp\madBasic_.bpl
2015-08-09 17:53 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\iFreeUp\madDisAsm_.bpl
2013-10-08 17:14 - 2013-02-20 22:58 - 00089672 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll
2015-03-02 22:30 - 2015-03-02 22:30 - 00039384 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
2015-08-05 20:18 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-05 20:18 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Dirk\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Dirk\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\hendr_000\SkyDrive:ms-properties

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"

==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com
IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com
IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\google.de -> hxxps://www.google.de
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\it-fachportal.de -> hxxps://www.it-fachportal.de
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\localhost -> hxxps://localhost
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\localhost -> hxxp://localhost
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\sony.com -> sony.com

IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\100sexlinks.com -> 100sexlinks.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\101hotteens.com -> 101hotteens.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\101lottery.com -> 101lottery.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\123expressview.com -> 123expressview.com
IE restricted site: HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\123found.com -> 123found.com

Da befinden sich 4787 mehr eingeschränkte Seiten.

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-532561150-3242956754-1626305917-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\hendr_000\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

MSCONFIG\Services: a2AntiMalware => 2
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: AMD FUEL Service => 2
MSCONFIG\Services: Apache2.4 => 2
MSCONFIG\Services: AtherosSvc => 2
MSCONFIG\Services: Avira.OE.ServiceHost => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: BstHdAndroidSvc => 2
MSCONFIG\Services: BstHdLogRotatorSvc => 2
MSCONFIG\Services: CCDMonitorService => 2
MSCONFIG\Services: DfSdkS => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: FileZilla Server => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: Hamachi2Svc => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMIGuardianSvc => 2
MSCONFIG\Services: MBAMScheduler => 2
MSCONFIG\Services: MBAMService => 2
MSCONFIG\Services: McAfee SiteAdvisor Service => 2
MSCONFIG\Services: metasploitPostgreSQL => 2
MSCONFIG\Services: metasploitProSvc => 2
MSCONFIG\Services: metasploitThin => 2
MSCONFIG\Services: metasploitWorker => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: mysql => 2
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: Razer Game Scanner Service => 2
MSCONFIG\Services: rpcapd => 3
MSCONFIG\Services: RzKLService => 2
MSCONFIG\Services: Secunia PSI Agent => 2
MSCONFIG\Services: Secunia Update Agent => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: SlimService => 2
MSCONFIG\Services: StartMenuService => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: SystemExplorerHelpService => 3
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\Services: Tomcat7 => 2
MSCONFIG\Services: TuneUp.UtilitiesSvc => 2
MSCONFIG\Services: vncserver => 3
MSCONFIG\Services: WSearch => 2
HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "mcpltui_exe"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "YTDownloader"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "FileZilla Server Interface"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKLM\...\StartupApproved\Run32: => "Andy"
HKLM\...\StartupApproved\Run32: => "avgnt"
HKLM\...\StartupApproved\Run32: => "emsisoft anti-malware"
HKLM\...\StartupApproved\Run32: => "SystemExplorerAutoStart"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "baerenmarke-widget.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\StartupFolder: => "Adobe Gamma.lnk"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "SkyDrive"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "YTDownloader"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Dxtory Update Checker 2.0"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "AppEx Accelerator UI"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "msnmsgr"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Browser Extensions"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "DesktopOK"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Search Protection"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "XAMPP Control Panel"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Advanced SystemCare 8"
HKU\S-1-5-21-532561150-3242956754-1626305917-1001\...\StartupApproved\Run: => "Steam"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{F603271F-944B-498D-AC22-4EAF1D17D497}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{8124257A-9E01-4AA5-ABC1-9A3123988F8B}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{58F47C55-D17A-47EC-8210-FC35A9ECA66D}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{F9C56998-E744-46C8-9D5A-4B17A51170BA}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{110661DB-3FDC-4FBB-9541-3908BC904AFC}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{21DE293D-9203-44EC-B297-61B809F74DB0}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{3E8C9A49-86D9-4A33-9F0E-66247067111A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{0B99A754-8F02-41E1-9E03-86D4B31C07A4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{937AF17E-DE8A-4FF7-BFE5-5ECE5D746A91}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{201F7BC2-A8E6-435C-9C22-3E3C55CD16D2}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{7065C90E-0A0D-4152-992B-29659584DB4D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{AD4DBDEE-AFF6-4623-B635-59FBD7140C4F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{A062D843-8F1F-4086-A697-0FD176A8A4CE}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{6517DA4C-6C29-4B63-B979-26646CB38DE9}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{F3988EAE-EE5B-4C4E-8577-5531B31B2D54}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{30FC91E0-54F5-4661-A362-22391693FBD1}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{14A5D67B-A0CC-4FC1-B8E0-27E11FE3C812}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{AC7545A3-C40E-42BC-B021-A409093FD5D5}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{C49ED8EA-CEDC-480F-8268-72D9D2E80236}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{98895709-AB83-40CA-98C2-0FCEB9C11B0F}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{ED980AF1-7766-421D-9BEF-34D3EAD5ED61}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [TCP Query User{C51DEAA9-3A39-4D25-8CAE-98D98A6CCA14}C:\users\hendr_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hendr_000\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{78A6F80D-4855-4333-A219-533386A8846C}C:\users\hendr_000\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hendr_000\appdata\roaming\spotify\spotify.exe
FirewallRules: [{25D3D9EE-3067-4C7D-A001-C7BB1501B972}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{3E6B2FAB-02C6-4785-8D12-F3F53D61F4B2}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{E3EDC567-9BD2-40E6-A1EB-5E7D22EE01F1}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [{D0A6FA2F-DAD8-4F17-87BF-E3A9B2741487}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe
FirewallRules: [TCP Query User{966E9B2B-C676-4293-BB2D-AB13D02E8721}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{5CAC66F1-A67C-437B-8AF5-800A25FE0B92}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{F25D1282-8486-4566-9071-614CA365D414}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{2F74FC5E-6F3A-4C68-B41B-92313370478D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{D4291174-E709-442A-8B13-5907C13CDD1C}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{EF07999A-2EC7-4029-A9DD-087B14ED9F38}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{D704C46B-A0E9-4437-A026-DD697C261F3C}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{F2F5AFF0-B67A-4812-9D68-04A5CF501D01}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRSP.exe
FirewallRules: [{1E82290E-6F43-4839-9A25-504EE7BC17A8}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{4EC33B1B-7105-458D-8AC5-CC5D4F756A28}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe
FirewallRules: [{B68AA5F6-9E41-465D-B3F3-48242FAFFABD}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [{8416B314-3B5C-4D5D-99A6-EC2DE485097C}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\AssassinsCreedRevelations.exe
FirewallRules: [TCP Query User{8228AF30-B5A9-4EC1-B545-6FA81CE74AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{E6F40B64-B57A-4C15-8C2C-49BC6E3E8FB3}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{BCA36857-D883-44C0-8DC2-9B618BF56C6B}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{C7578792-77F8-46BE-B86E-3A5F838C3B48}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{77ADEE26-B33C-4BF0-9F83-8E82C83D39F0}C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe] => (Allow) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [UDP Query User{71EA72B4-D2F6-4874-B079-256FB5001B34}C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe] => (Allow) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{13AD290E-BC56-40BC-993D-552F7C50D99F}] => (Block) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{2E56D11E-1DD0-4C6E-97A0-D8AEB420D402}] => (Block) C:\program files (x86)\ubisoft\assassin's creed revelations\acrpr.exe
FirewallRules: [{11B68A8A-F88A-4C59-8D9B-863AFC4A8FA8}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{F0B07D80-7C82-412A-BFDE-F0C3AF2FBC4B}] => (Allow) LPort=2869
FirewallRules: [{0BC3FFDC-99C1-4A49-9F60-86A73EB7C207}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{5026E3CD-CE3F-4F23-B7A1-EEBEBE6B93A3}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{3B8F6EAA-C35F-42E8-9FEC-0CB57CC15A05}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [{1EC34949-E805-4158-AA08-5C4EA2CF8CA9}] => (Block) C:\program files (x86)\brackets\node.exe
FirewallRules: [{312D4831-5FB1-441E-8ADD-05B62262FDE2}] => (Block) C:\program files (x86)\brackets\node.exe
FirewallRules: [TCP Query User{75B351CF-A13D-47E9-A3D2-91B4CD61C40A}C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe
FirewallRules: [UDP Query User{1FB4D50B-A12B-4E8D-B4C7-B68FDFEBB3C5}C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\java\eclipse\eclipse.exe
FirewallRules: [{0843895D-6295-4013-8667-8D73952E5907}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{C1FDEF06-46C9-4C74-A413-A6FB6C898410}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{E5E28012-02C1-46F0-96DA-B1F6099ABFDF}C:\metasploit\ruby\bin\ruby.exe] => (Allow) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [UDP Query User{D4482865-0BDB-4A24-9FD2-72567ABB7E8E}C:\metasploit\ruby\bin\ruby.exe] => (Allow) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [{8B632EB9-B21D-406E-B9D0-B30D6C4E377A}] => (Block) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [{6C37860C-6BDC-4F3C-A726-82BB64A610BE}] => (Block) C:\metasploit\ruby\bin\ruby.exe
FirewallRules: [TCP Query User{C2BF4B57-117F-4B6C-BB07-9F5A32E4FC8F}C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe
FirewallRules: [UDP Query User{45A7B396-1FF5-4D6B-9B7B-2B5A030BF2A2}C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe] => (Allow) C:\users\hendr_000\mystuff\programmierung\editoren\aptana\aptanastudio3.exe
FirewallRules: [TCP Query User{0469D19F-D3D1-4857-9795-59CDD7F044CF}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{6F497ACC-EA15-437F-8940-453641BC42EB}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [{A8770975-DA84-498D-B8DA-8C5513D789AB}] => (Block) C:\xampp\apache\bin\httpd.exe
FirewallRules: [{3E26A083-9947-4AEC-8A50-300623DCCDAE}] => (Block) C:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{DD19F79F-C9BC-4DDC-982B-73EF0ABB22EB}C:\program files (x86)\cryengine\bin64\editor.exe] => (Allow) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [UDP Query User{6D15D010-03CE-4475-BB59-FA9ADA3C83D2}C:\program files (x86)\cryengine\bin64\editor.exe] => (Allow) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [{BF69B881-B3AA-4C53-A25E-A6B884D9E701}] => (Block) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [{68E88234-A025-4671-A891-776DB26DA38B}] => (Block) C:\program files (x86)\cryengine\bin64\editor.exe
FirewallRules: [TCP Query User{B7B9E0B8-B1F3-435B-9788-62E8A6B9A872}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [UDP Query User{00AAE738-611C-48EC-900A-12AFD3FCAFF9}C:\program files (x86)\unity\editor\unity.exe] => (Allow) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{D5D98A23-ADE4-44D5-81F9-CAC1B3950615}] => (Block) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [{1054CED2-AD7C-4B03-8A49-1EED7C02EFB9}] => (Block) C:\program files (x86)\unity\editor\unity.exe
FirewallRules: [TCP Query User{AB1D47A1-9E92-4AAC-BB5E-DA0C8FD4EF7C}C:\program files (x86)\cryengine\bin64\gamesdk.exe] => (Allow) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [UDP Query User{6178A0C5-398B-48E1-9D81-FE61B22EEA6F}C:\program files (x86)\cryengine\bin64\gamesdk.exe] => (Allow) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [{E51989AF-29B9-4EA4-A139-47DB360F67E0}] => (Block) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [{2BF15603-7089-4657-AD03-C61CDE23538E}] => (Block) C:\program files (x86)\cryengine\bin64\gamesdk.exe
FirewallRules: [TCP Query User{79A5DCA7-57DE-48B1-A927-D33F287E54B2}C:\users\hendr_000\documents\cryengine\bin64\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [UDP Query User{32A12F2F-F112-44DA-BE11-31BF731E9E3C}C:\users\hendr_000\documents\cryengine\bin64\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [{458335D4-AF90-4202-A408-1C24E6B62BBB}] => (Block) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [{20CDAE8E-5115-4272-B9E6-037EFCB98608}] => (Block) C:\users\hendr_000\documents\cryengine\bin64\editor.exe
FirewallRules: [TCP Query User{6A9E6584-6304-42F5-993B-FBDCF075838A}C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe
FirewallRules: [UDP Query User{376D2007-B844-47FD-BE56-641712F1D324}C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin64\gamesdk.exe
FirewallRules: [TCP Query User{C95AF740-FE53-4E45-8DCA-33EB7B1AAED9}C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [UDP Query User{8BCD298F-9269-4428-9D23-151F1538120A}C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [{D2F96B2D-CCD8-4891-8050-C2DFD04EACBA}] => (Block) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [{C76A41AD-FA49-43E4-96FE-5EE84A3DD881}] => (Block) C:\program files\epic games\epic games\4.7\engine\binaries\win64\ue4editor.exe
FirewallRules: [TCP Query User{8D602232-55C1-41DD-8A01-F33A236DB5AE}C:\users\hendr_000\documents\cryengine\bin32\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [UDP Query User{106CDF08-7E78-4A34-8001-6EE16CB96766}C:\users\hendr_000\documents\cryengine\bin32\editor.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [{D0A9B9B4-68D4-4FEC-B37F-67AEEFF0B203}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [{323C0C18-6D80-4559-896D-E5AF6911C1E7}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\editor.exe
FirewallRules: [TCP Query User{6FE9F28C-F70D-4C5D-B9FF-019AFEEC7B93}C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [UDP Query User{C1804E13-76AB-41DB-9328-5257004FE841}C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe] => (Allow) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [{D6EB6422-202A-4A5E-BF0B-B0A6B59D50E4}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [{242B9913-EA5A-4C4E-AAE3-16230FB957E4}] => (Block) C:\users\hendr_000\documents\cryengine\bin32\gamesdk.exe
FirewallRules: [TCP Query User{195EE537-01C6-44CD-A307-800C1CF94A87}C:\cpp\examples\internet\chat\chat.exe] => (Allow) C:\cpp\examples\internet\chat\chat.exe
FirewallRules: [UDP Query User{DABE827D-34BA-44A8-9A8B-B6BC17E4E3C5}C:\cpp\examples\internet\chat\chat.exe] => (Allow) C:\cpp\examples\internet\chat\chat.exe
FirewallRules: [{56CF1C8A-1443-4F27-8C85-F6F5F743323A}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe
FirewallRules: [{6409AB8A-8598-45F1-AE83-8F1624FE5B58}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe
FirewallRules: [TCP Query User{314F0CD0-1A80-483F-82FF-36198B8A1FDB}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{9957FF52-D7D5-4B4B-8FA1-FCA9A71A2BF3}C:\program files\java\jre7\bin\java.exe] => (Allow) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{F87B52C1-E5E6-47DB-BCA6-B162A70A7ACC}] => (Block) C:\program files\java\jre7\bin\java.exe
FirewallRules: [{63A0C587-58E4-407A-8430-F91740892A6D}] => (Block) C:\program files\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{A49BFC24-9286-49C3-9304-21FC0750A1DA}C:\program files\unity 5\unity\editor\unity.exe] => (Allow) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [UDP Query User{B3EDA260-403F-428A-A8B9-B5762318613D}C:\program files\unity 5\unity\editor\unity.exe] => (Allow) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [{9FC5CAC6-6A24-4340-85AF-9B8620A4E552}] => (Block) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [{7C4DEE34-41D9-4C38-B29B-A54F75A853AB}] => (Block) C:\program files\unity 5\unity\editor\unity.exe
FirewallRules: [TCP Query User{854AD037-515D-4925-96DC-1AF287E7C42B}C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe] => (Allow) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [UDP Query User{D8EC7D10-43E7-4BC2-B202-3CA1FF1E8950}C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe] => (Allow) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{03B02D1A-6516-46D2-960D-452EC55DCBF3}] => (Block) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{2A9E7B31-8490-426A-A6E9-FCCC572E6557}] => (Block) C:\program files\unity 5\unity\monodevelop\bin\monodevelop.exe
FirewallRules: [{B4AFDC92-AA95-41B4-8257-B150514410FA}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{FF23AC4E-554B-4AA2-9E9A-5778B5A891E5}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{1EAA34F2-4342-4CD9-893A-1307A4F12A04}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [{50A8C8BE-7BBC-442E-A24D-898131A9B1D7}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [TCP Query User{EC3AE3A3-7D9A-4A24-8D07-781EA2C5AF3D}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [UDP Query User{9229B7E1-BB80-4D3C-93E0-DC19562706F8}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{9D113644-2AC2-463B-925A-5D8955B6716B}] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{4DD836E9-2A23-4519-8B28-47FF1B608D07}] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe
FirewallRules: [{1EBFDC13-43FF-4939-9C24-F738E8D2DFFF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FBBADDCD-8B85-42A5-9977-CD685D11827B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E58493BE-881A-4D98-9E39-7E9F29C8366A}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{313285AD-26AB-4542-BD25-A04B23F389A7}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{64A382BA-47D7-4C03-93D9-9DFF6BAD8F24}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{8B089474-445E-4F28-A5B4-B0E92401E283}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{B0FC994D-1EB8-4F27-BE21-59537526801E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{EFAB1B06-094C-4AD0-B928-EF375946CC03}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe
FirewallRules: [{EFC62194-F61D-417B-A09C-166CD65856EF}] => (Allow) C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Registrierung konnte nicht geladen werden. Dieses Problem wird oft durch zuwenig Arbeitsspeicher oder nicht ausreichende Sicherheitsberechtigungen verursacht.

 Details - Die Datenbank der Konfigurationsregistrierung ist beschädigt.
 for C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 03:36:56 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (08/12/2015 03:32:44 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Klassenregistrierungsdatei kann nicht geladen werden.
 DETAIL - Die Datenbank der Konfigurationsregistrierung ist beschädigt.


Systemfehler:
=============
Error: (08/12/2015 03:09:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275

Error: (08/12/2015 03:09:28 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\HENDR_~1\AppData\Local\Temp\ehdrv.sys

Error: (08/12/2015 03:09:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275

Error: (08/12/2015 03:09:28 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\HENDR_~1\AppData\Local\Temp\ehdrv.sys

Error: (08/12/2015 03:09:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1275

Error: (08/12/2015 03:09:28 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\HENDR_~1\AppData\Local\Temp\ehdrv.sys

Error: (08/11/2015 08:59:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet:
%%1062

Error: (08/11/2015 08:34:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "WMI-Leistungsadapter" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/11/2015 08:34:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "VMware Authorization Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/11/2015 08:34:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "VMware USB Arbitration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.


Microsoft Office:
=========================
Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 04:00:17 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.

Error: (08/12/2015 03:45:39 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.
C:\Users\hendr_000\AppData\Local\Microsoft\Windows\\UsrClass.dat

Error: (08/12/2015 03:36:56 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (08/12/2015 03:32:44 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT-AUTORITÄT)
Description: Die Datenbank der Konfigurationsregistrierung ist beschädigt.


CodeIntegrity:
===================================
  Date: 2015-08-12 15:25:04.718
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:25:03.656
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:25:02.500
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:25:01.031
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:24:44.202
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:24:43.186
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:24:42.046
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:24:41.014
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:24:39.889
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2015-08-12 15:24:38.671
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Speicherinformationen ===========================

Processor: AMD E1-2500 APU with Radeon(TM) HD Graphics
Prozentuale Nutzung des RAM: 43%
Installierter physikalischer RAM: 3525.01 MB
Verfügbarer physikalischer RAM: 1976.29 MB
Summe virtueller Speicher: 7109.01 MB
Verfügbarer virtueller Speicher: 5268.23 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:444.6 GB) (Free:220.12 GB) NTFS
Drive d: () (Removable) (Total:14.89 GB) (Free:0.86 GB) FAT32
Drive e: (WINDOWS 8) (Removable) (Total:2.77 GB) (Free:2.77 GB) FAT32

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D5A694CC)

Partition: GPT.

========================================================
Disk: 1 (Size: 14.9 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 2 (Size: 7.3 GB) (Disk ID: 588C9F2A)
Partition 1: (Active) - (Size=2.8 GB) - (Type=0B)
Partition 2: (Not Active) - (Size=63 MB) - (Type=01)

==================== Ende von Ergebnis ============================

Die Apps funktionieren leider immer noch nicht... :heulen::killpc:

schrauber 13.08.2015 09:47

Java, Flash und Thunderbird updaten.

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

Task: C:\Windows\Tasks\UIZJU.job => C:\Users\hendr_000\AppData\Roaming\UIZJU.exe <==== ACHTUNG
C:\Users\hendr_000\AppData\Roaming\UIZJU.exe
Emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.





Bitte Windows Repair laufen lassen:
Windows reparieren - so geht's - Anleitungen

Wandalensalz 15.08.2015 16:30

Fixlog.txt:

Code:

Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:13-08-2015
durchgeführt von hendrik_2002 (2015-08-14 14:58:08) Run:1
Gestartet von C:\Users\hendr_000\Desktop\Logs\FRST
Geladene Profile: hendrik_2002 (Verfügbare Profile: hendrik_2002 & Dirk & Niklas Steinmetz & Administrator)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
Task: C:\Windows\Tasks\UIZJU.job => C:\Users\hendr_000\AppData\Roaming\UIZJU.exe <==== ACHTUNG
C:\Users\hendr_000\AppData\Roaming\UIZJU.exe
Emptytemp:
*****************

C:\Windows\Tasks\UIZJU.job => erfolgreich verschoben.
"C:\Users\hendr_000\AppData\Roaming\UIZJU.exe" => Datei/Ordner nicht gefunden.
EmptyTemp: => 889.5 MB temporäre Dateien entfernt.


Das System musste neu gestartet werden..

==== Ende von Fixlog 14:58:38 ====

FlashPlayer-, Thunderbird- und Java-Updates gab es nicht...
Ich habe noch alte Java-Versionen drauf, wegen JFX, das nur in Java 1.7.0_25
enthalten ist.

Die Apps starten immer noch nicht, aber auf dem Metro-Screen sind jetzt neben allen Apps
unten links auf der Kachel ein kleines Kreuz, habe leider keine Ahnung, was das be-
deutet...(?)

schrauber 16.08.2015 06:43

Zitat:

FlashPlayer-, Thunderbird- und Java-Updates gab es nicht..
Doch, gibt es. Als Beispiel: Flash gibt es in Version 18.

Repair Tool komplett gemacht?

Wandalensalz 16.08.2015 16:59

RepairTool habe ich dutchlaufen lassen. Ich habe aus versehen
bei der falschen FlashPlayer Version geguckt, habe deshalb
wahrscheinlich kein Update gefunden, werde dies jetzt nachholen...

schrauber 17.08.2015 07:24

Ok. Bestehen dann noch Probleme?

Wandalensalz 18.08.2015 12:36

So, habe geupdatet, die Probleme wollen aber einfach nicht
verschwinden..

Bin jetzt für ein paar Tage Offline.

schrauber 19.08.2015 07:28

Dann würde ich jetzt einen Refresh von 8.1 vorschlagen.

Wandalensalz 21.08.2015 06:06

So, bin wieder online.
Folgendes:
Ich habe mir gestern mit dem Media Creation Tool ein Wiederherstellungs-USB-Stick
erstellt. Habe dann über den erweiterten Start versucht meinen PC aufzufrischen, was
aber nicht funktionierte, weil mir ein Fehler ausgegeben wurde, dass es Probleme
beim Auffrischen gab und keine Änderungen vorgenommen wurden.
Ich habe dann die Starthilfe von Windows aufgerufen, die meinen PC auch nicht reparieren
konnte.
Darauf vermutete ich, dass etwas mit dem Stick nicht stimmte und bin in die
Systemsteuerung gegangen und habe dort versucht ein Wiederherstellungslaufwerk zu erstellen.
Daraufhin kam die Meldung "Auf diesem PC kann kein Wiederherstellungslaufwerk erstellt werden"
Was soll ich jetzt machen?

LG Wandalensalz

schrauber 21.08.2015 07:38

Zitat:

weil mir ein Fehler ausgegeben wurde, dass es Probleme
beim Auffrischen gab und keine Änderungen vorgenommen wurden.
Stand da auch ein Fehlercode oder ähnliches?

Wandalensalz 21.08.2015 10:00

Nein, leider nichts...

schrauber 22.08.2015 09:52

Auffrischen ist aber irgendwie die letze Option gewesen.....

Wandalensalz 22.08.2015 11:46

Dann also reset? Oder gibt es einen anderen Weg? Oder was ist mit "letzte Option gemeint?"

schrauber 23.08.2015 06:07

Reset ist das einzige was mir noch einfällt. Weiter rum frickeln würde ich nicht.

Wandalensalz 23.08.2015 06:10

Okay, dann mach ich das mal. Wird aber was dauern, da ich momentan nicht
viel Zeit habe, also nicht wundern wenn eine Weile nichts kommt.
Übrigens Danke schon mal im Voraus für deine Hilfe und Freundlichkeit!!! :)

schrauber 23.08.2015 07:55

gerne :)

Wandalensalz 23.08.2015 19:44

So, habe nun resettet, aber als ich den Internet Explorer öffnete,
begrüßte mich die Seit "delta-homes.com". Ist das ein Virus??
Die Apps funktionierten ALLE wieder, vielen Dank :)!

Gruß
Wandalensalz

schrauber 24.08.2015 15:05

Poste mal bitte frische FRST logs :)

Wandalensalz 24.08.2015 16:17

FRST.txt


FRST Logfile:
Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:23-08-2015
durchgeführt von Name (Administrator) auf ARBEITS-PC (24-08-2015 16:57:05)
Gestartet von C:\Users\Name\Desktop
Geladene Profile: Name (Verfügbare Profile: Name)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Oracle Corporation) C:\Program Files\Oracle\VirtualBox\VirtualBox.exe
(Oracle Corporation) C:\Program Files\Oracle\VirtualBox\VBoxSVC.exe
(Oracle Corporation) C:\Program Files\Oracle\VirtualBox\VirtualBox.exe
(Oracle Corporation) C:\Program Files\Oracle\VirtualBox\VirtualBox.exe
(Oracle Corporation) C:\Program Files\Oracle\VirtualBox\VirtualBox.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17200_none_fa7026dd9b04586e\TiWorker.exe
(Mozilla Corporation) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta.exe
(Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
(Mozilla Corporation) C:\Program Files (x86)\Firefox Developer Edition\plugin-container.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)

HKU\S-1-5-21-1401523435-2182861310-3413026540-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.delta-homes.com/?type=hp&ts=1418919801&from=wpm12173&uid=WDCXWD5000LPVX-22V0TT0_WD-WX41A734691746917
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-08-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-08-23] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-08-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-24] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-23] (Microsoft Corporation)
Tcpip\..\Interfaces\{78DFBEB7-7BBC-448C-AD99-84E3B18488D9}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Name\AppData\Roaming\Mozilla\Firefox\Profiles\zb2ntu7n.default
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-24] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-23] (Microsoft Corporation)
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Firefox Developer Edition\firefox.exe

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2765496 2015-07-14] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-09-24] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-09-24] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-08-13] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [146072 2015-08-13] (Oracle Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-24 16:57 - 2015-08-24 17:00 - 00006811 _____ C:\Users\Name\Desktop\FRST.txt
2015-08-24 16:55 - 2015-08-24 16:58 - 00000000 ____D C:\FRST
2015-08-24 16:54 - 2015-08-24 16:54 - 02173952 _____ (Farbar) C:\Users\Name\Desktop\FRST64.exe
2015-08-24 16:49 - 2015-07-05 12:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-08-24 15:17 - 2015-08-24 15:42 - 3403579392 _____ C:\Users\Name\Downloads\kali-linux-2.0-i386.iso
2015-08-24 15:15 - 2015-08-24 15:15 - 00000000 ____D C:\Users\Name\VirtualBox VMs
2015-08-24 15:13 - 2015-08-24 15:54 - 00000000 ____D C:\Users\Name\.VirtualBox
2015-08-24 15:12 - 2015-08-24 15:12 - 00001096 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2015-08-24 15:12 - 2015-08-24 15:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2015-08-24 15:12 - 2015-08-13 18:24 - 00960808 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2015-08-24 15:12 - 2015-08-13 18:24 - 00138904 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2015-08-24 11:45 - 2015-08-24 11:45 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-08-24 11:45 - 2015-08-24 11:45 - 00000000 ____D C:\Users\Name\AppData\Roaming\Sun
2015-08-24 11:45 - 2015-08-24 11:45 - 00000000 ____D C:\Users\Name\.oracle_jre_usage
2015-08-24 11:45 - 2015-08-24 11:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-24 11:44 - 2015-08-24 11:44 - 00000000 ____D C:\ProgramData\Oracle
2015-08-24 11:44 - 2015-08-24 11:44 - 00000000 ____D C:\Program Files (x86)\Java
2015-08-24 11:40 - 2015-08-24 11:46 - 00000000 ____D C:\Users\Name\AppData\Local\Mozilla
2015-08-24 11:40 - 2015-08-24 11:40 - 00000000 ____D C:\Users\Name\AppData\Roaming\Mozilla
2015-08-24 11:39 - 2015-08-24 11:39 - 00000000 ____D C:\Users\Name\AppData\Roaming\java
2015-08-24 11:38 - 2015-08-24 15:11 - 00000000 ____D C:\Users\Name\AppData\Roaming\.minecraft
2015-08-24 11:37 - 2015-08-24 11:42 - 00000000 ___DO C:\Users\Name\OneDrive
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\Users\Name\AppData\Roaming\ATI
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\Users\Name\AppData\Local\ATI
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\Users\Name\AppData\Local\AMD
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\ProgramData\ATI
2015-08-23 19:55 - 2015-08-23 19:55 - 00000000 ____D C:\Program Files (x86)\Firefox Developer Edition
2015-08-23 19:53 - 2015-08-24 11:40 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{82BBDC4A-A9BF-4DD8-91B6-CACB6C1E52A6}
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 __SHD C:\Users\Name\AppData\Local\EmieUserList
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 __SHD C:\Users\Name\AppData\Local\EmieSiteList
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\Documents\xls
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\Documents\Virtual Machines
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\Documents\CryEngine
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\AppData\Roaming\Macromedia
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\Tasm 1.4
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\servlets+jsp
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\Program Files\Wireshark
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\Program Files\WinPcap
2015-08-23 19:51 - 2015-08-23 19:51 - 00060817 _____ C:\Windows\SysWOW64\CCCInstall_201508231951554722.log
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\ProgramData\AMD
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\Program Files\Oracle
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\Program Files\ATI Technologies
2015-08-23 19:50 - 2015-08-23 19:51 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-08-23 19:50 - 2015-08-23 19:50 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-23 19:50 - 2015-08-23 19:50 - 00000000 ____D C:\Program Files\Common Files\VMware
2015-08-23 19:50 - 2015-08-23 19:50 - 00000000 ____D C:\Program Files\Common Files\Borland Shared
2015-08-23 19:49 - 2015-08-23 19:49 - 00000000 ____D C:\AMD
2015-08-23 19:49 - 2015-08-23 19:49 - 00000000 _____ C:\Windows\system32\spu_storage.bin
2015-08-23 19:49 - 2015-08-23 19:49 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-08-23 19:48 - 2015-08-23 19:49 - 00000000 ____D C:\Program Files (x86)\Webocton - Scriptly
2015-08-23 19:48 - 2015-08-23 19:48 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-08-23 19:48 - 2015-08-23 19:48 - 00000000 ____D C:\Program Files\AMD
2015-08-23 19:47 - 2015-08-24 11:37 - 00000000 ___RD C:\Users\Name\OneDrive.old
2015-08-23 19:47 - 2015-08-23 19:48 - 00000000 ____D C:\Program Files (x86)\WinRAR
2015-08-23 19:47 - 2015-08-23 19:47 - 00003104 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1401523435-2182861310-3413026540-1001
2015-08-23 19:46 - 2015-08-23 19:46 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-23 19:46 - 2015-08-23 19:46 - 00000000 ____D C:\Program Files (x86)\VMware
2015-08-23 19:45 - 2015-08-23 19:45 - 00000000 ____D C:\Program Files (x86)\System Explorer
2015-08-23 19:45 - 2015-08-23 19:45 - 00000000 ____D C:\Program Files (x86)\Minecraft
2015-08-23 19:42 - 2015-08-23 19:42 - 00000000 __SHD C:\Recovery
2015-08-23 19:42 - 2015-08-23 19:42 - 00000000 ____D C:\Program Files (x86)\7-Zip
2015-08-23 19:42 - 2015-08-23 19:42 - 00000000 _____ C:\Recovery.txt
2015-08-23 19:39 - 2015-08-23 19:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-08-23 19:36 - 2015-08-23 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-08-23 19:35 - 2015-08-24 15:17 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1401523435-2182861310-3413026540-1001
2015-08-23 19:35 - 2015-08-23 19:35 - 00047104 ___SH C:\Users\Name\Desktop\Thumbs.db
2015-08-23 19:35 - 2015-08-23 19:35 - 00001181 _____ C:\Users\Name\Desktop\MyStuff.lnk
2015-08-23 19:34 - 2015-08-23 19:34 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-08-23 19:33 - 2015-08-23 19:56 - 00000000 ____D C:\Users\Name\MyStuff
2015-08-23 19:33 - 2015-08-23 19:33 - 00000000 ____D C:\Assembler
2015-08-23 19:31 - 2015-08-23 19:31 - 00000000 ____D C:\Users\Name\AppData\Local\GWX
2015-08-23 19:23 - 2015-08-23 19:25 - 00000000 ____D C:\Users\Name\AppData\Local\PackageStaging
2015-08-23 19:23 - 2015-08-23 19:23 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-08-23 19:22 - 2015-08-24 14:10 - 00000000 ____D C:\Users\Name\AppData\Local\Packages
2015-08-23 19:22 - 2015-08-23 19:22 - 00001458 _____ C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-23 19:22 - 2015-08-23 19:22 - 00000000 ____D C:\Users\Name\AppData\Roaming\Adobe
2015-08-23 19:22 - 2015-08-23 19:22 - 00000000 ____D C:\Users\Name\AppData\Local\VirtualStore
2015-08-23 19:21 - 2015-08-23 19:23 - 00000000 ___SD C:\Windows\system32\GWX
2015-08-23 19:21 - 2015-08-23 19:21 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-08-23 19:20 - 2015-08-24 15:15 - 00000000 ____D C:\Users\Name
2015-08-23 19:20 - 2015-08-23 19:20 - 00000020 ___SH C:\Users\Name\ntuser.ini
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Vorlagen
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Startmenü
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Netzwerkumgebung
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Lokale Einstellungen
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Eigene Dateien
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Druckumgebung
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Documents\Eigene Musik
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Documents\Eigene Bilder
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\AppData\Local\Verlauf
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\AppData\Local\Anwendungsdaten
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Anwendungsdaten
2015-08-23 19:20 - 2014-09-24 09:43 - 00000000 ___RD C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-23 19:20 - 2014-09-24 09:43 - 00000000 ___RD C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-23 19:20 - 2014-09-24 08:18 - 00000369 _____ C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-08-23 19:20 - 2014-09-24 08:18 - 00000369 _____ C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-08-23 19:20 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-23 19:20 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-23 19:17 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-23 19:17 - 2015-07-09 20:48 - 02758128 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-08-23 19:17 - 2015-07-09 20:48 - 00131712 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe
2015-08-23 19:17 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-08-23 19:17 - 2015-07-09 19:59 - 02412576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-08-23 19:17 - 2015-07-09 19:59 - 00112624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe
2015-08-23 19:17 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-23 19:17 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-23 19:17 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-23 19:17 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-08-23 19:17 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-23 19:17 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-23 19:17 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-23 19:17 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-23 19:17 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-23 19:17 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-23 19:17 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-23 19:17 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-08-23 19:17 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-08-23 19:17 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-08-23 19:17 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-08-23 19:17 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2015-08-23 19:16 - 2015-08-24 16:43 - 01271455 _____ C:\Windows\WindowsUpdate.log
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Vorlagen
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Startmenü
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Vorlagen
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Startmenü
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Dokumente
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Dokumente und Einstellungen
2015-08-23 18:44 - 2015-08-23 18:44 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-23 18:43 - 2015-08-23 19:37 - 00000000 ____D C:\Windows\Panther
2015-08-13 18:24 - 2015-08-13 18:24 - 00146072 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetLwf.sys
2015-08-13 18:24 - 2015-08-13 18:24 - 00117768 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp6.sys

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-24 17:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-24 17:00 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-08-24 16:45 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-08-24 14:16 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-08-23 19:53 - 2014-09-24 08:17 - 01686150 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-23 19:53 - 2014-09-24 07:43 - 00727930 _____ C:\Windows\system32\perfh007.dat
2015-08-23 19:53 - 2014-09-24 07:43 - 00151586 _____ C:\Windows\system32\perfc007.dat
2015-08-23 19:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Recovery
2015-08-23 19:41 - 2013-08-22 17:36 - 00262144 _____ C:\Windows\system32\config\BCD-Template
2015-08-23 19:32 - 2013-08-22 16:46 - 00013686 _____ C:\Windows\setupact.log
2015-08-23 19:22 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-23 19:18 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-08-23 19:16 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-08-23 19:13 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT
2015-08-23 19:13 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default
2015-08-23 18:47 - 2013-08-22 17:37 - 00002664 _____ C:\Windows\DtcInstall.log
2015-08-23 18:47 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-08-23 18:44 - 2013-08-22 16:44 - 00338016 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-23 18:43 - 2014-09-23 23:06 - 00002482 _____ C:\Windows\PFRO.log

Einige Dateien in TEMP:
====================
C:\Users\Name\AppData\Local\Temp\OfficeSetup.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-08-23 18:43

==================== Ende von Ergebnis ============================

--- --- ---


Addition.txt

FRST Additions Logfile:
Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:23-08-2015
durchgeführt von Name (2015-08-24 17:05:59)
Gestartet von C:\Users\Name\Desktop
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1401523435-2182861310-3413026540-500 - Administrator - Disabled)
Gast (S-1-5-21-1401523435-2182861310-3413026540-501 - Limited - Disabled)
Name (S-1-5-21-1401523435-2182861310-3413026540-1001 - Administrator - Enabled) => C:\Users\Name
HomeGroupUser$ (S-1-5-21-1401523435-2182861310-3413026540-1003 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Firefox Developer Edition 42.0a2 (x86 de) (HKLM-x32\...\Firefox Developer Edition 42.0a2 (x86 de)) (Version: 42.0a2 - Mozilla)
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4745.1002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1401523435-2182861310-3413026540-1001\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4745.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4745.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4745.1002 - Microsoft Corporation) Hidden
Oracle VM VirtualBox 5.0.2 (HKLM\...\{6CB00039-29CC-42A1-8ED2-820821DA2B8A}) (Version: 5.0.2 - Oracle Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-1401523435-2182861310-3413026540-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Name\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Wiederherstellungspunkte =========================

23-08-2015 19:18:05 Windows Modules Installer

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {11FA4818-6732-48AF-9E4A-01CE0629E1B7} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1401523435-2182861310-3413026540-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {9919ACA5-1651-4FD3-914C-161801E1D126} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-14] (Microsoft Corporation)
Task: {EEC8AF5D-40BC-4C2A-BC33-79C4197E6E96} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-14] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-08-23 19:34 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2014-07-04 21:33 - 2014-07-04 21:33 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2014-07-04 21:33 - 2014-07-04 21:33 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2015-08-23 19:36 - 2015-08-23 19:40 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Name\OneDrive:ms-properties

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-1401523435-2182861310-3413026540-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Name\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{71947BE4-0D88-49D3-9E22-FA5620F0169B}] => (Allow) C:\Users\Name\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{A757A267-8DF7-45D4-A12A-D5C1780EB68C}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [{3BAA2C85-3F78-4654-982B-3991E09E4B41}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [TCP Query User{4998AA0B-67A6-469E-B55E-FF9A7DD72968}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{7823CE8D-365D-4904-A7C6-11CE4AB700B9}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (08/24/2015 11:48:18 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm javaw.exe, Version 8.0.25.18 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: e8c

Startzeit: 01d0de51e99ff1d4

Endzeit: 70

Anwendungspfad: C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe

Berichts-ID: 39507748-4a45-11e5-8252-a4db3080e4a1

Vollständiger Name des fehlerhaften Pakets:

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


Systemfehler:
=============
Error: (08/23/2015 07:31:31 PM) (Source: DCOM) (EventID: 10016) (User: ARBEITS-PC)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}Arbeits-PCNameS-1-5-21-1401523435-2182861310-3413026540-1001LocalHost (unter Verwendung von LRPC)Microsoft.BingWeather_3.0.2.309_x64__8wekyb3d8bbweS-1-15-2-2040986369-264322980-3882385089-1970153872-3662121739-3363227934-2464603330

Error: (08/23/2015 07:20:25 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Windows Search" wurde nicht richtig gestartet.

Error: (08/23/2015 06:46:38 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (08/23/2015 06:44:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Netzwerklistendienst" wurde mit folgendem Fehler beendet:
%%21

Error: (08/23/2015 06:44:24 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "IP-Hilfsdienst" wurde mit folgendem Fehler beendet:
%%1058

Error: (08/23/2015 06:43:06 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen.


Microsoft Office:
=========================
Error: (08/24/2015 11:48:18 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: javaw.exe8.0.25.18e8c01d0de51e99ff1d470C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe39507748-4a45-11e5-8252-a4db3080e4a1


==================== Speicherinformationen ===========================

Processor: AMD E1-2500 APU with Radeon(TM) HD Graphics
Prozentuale Nutzung des RAM: 79%
Installierter physikalischer RAM: 3525.01 MB
Verfügbarer physikalischer RAM: 739.43 MB
Summe virtueller Speicher: 4869.01 MB
Verfügbarer virtueller Speicher: 1345.37 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:444.6 GB) (Free:415.34 GB) NTFS
Drive d: () (Removable) (Total:14.89 GB) (Free:0.55 GB) FAT32

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D5A694CC)

Partition: GPT.

========================================================
Disk: 1 (Size: 14.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Ende von Ergebnis ============================

--- --- ---

Habe meinen Namen mit "Name" ersetzt, also nicht wundern.. :)

schrauber 25.08.2015 05:46

hi,

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Wandalensalz 25.08.2015 13:03

AdwCleaner[C1].txt

AdwCleaner Logfile:
Code:

# AdwCleaner v5.003 - Bericht erstellt 25/08/2015 um 13:17:24
# Aktualisiert 20/08/2015 von Xplode
# Datenbank : 2015-08-23.3 [Server]
# Betriebssystem : Windows 8.1  (x64)
# Benutzername : Name - ARBEITS-PC
# Gestarted von : C:\Users\Name\Desktop\AdwCleaner_5.003.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Ordner ] *****


***** [ Dateien ] *****


***** [ Verknüpfungen ] *****


***** [ Geplante Tasks ] *****


***** [ Registrierungsdatenbank ] *****

[-] Daten Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Daten Wiederhergestellt : HKU\S-1-5-21-1401523435-2182861310-3413026540-1001\Software\Microsoft\Internet Explorer\Main [Start Page]

***** [ Internetbrowser ] *****


*************************

:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [877 Bytes] ##########

--- --- ---

[/CODE]

Gruss
Wandalensalz

schrauber 26.08.2015 06:47

Dann bitte nochmal ein frisches FRST Log :)

Wandalensalz 27.08.2015 15:32

Mein Log ist zu lang D:
kann aber glaube ich die Addition.txt posten, falls die von Bedeutung ist..
Wie mache ich das mit der FRST.txt??

schrauber 28.08.2015 08:03

Beide Logs einfach in Stücke teilen und mehrere Post nutzen :)

Wandalensalz 28.08.2015 15:15

FRST.txt Teil 1:

Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:26-08-2015
durchgeführt von Name (Administrator) auf ARBEITS-PC (27-08-2015 16:17:34)
Gestartet von C:\Users\Name\Desktop
Geladene Profile: Name (Verfügbare Profile: Name)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-08-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-08-23] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-08-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-24] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-23] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{78DFBEB7-7BBC-448C-AD99-84E3B18488D9}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Name\AppData\Roaming\Mozilla\Firefox\Profiles\zb2ntu7n.default
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-24] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-23] (Microsoft Corporation)
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Firefox Developer Edition\firefox.exe

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2765496 2015-07-14] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-08-13] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [146072 2015-08-13] (Oracle Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-27 16:17 - 2015-08-27 16:21 - 00005922 _____ C:\Users\Name\Desktop\FRST.txt
2015-08-25 18:49 - 2015-08-25 19:24 - 3176333312 _____ C:\Users\Name\Downloads\kali-linux-1.1.0a-i386.iso
2015-08-25 16:25 - 2015-08-25 16:32 - 00000000 ____D C:\MinGW
2015-08-25 13:30 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-25 13:30 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-08-25 13:13 - 2015-08-25 13:17 - 00000000 ____D C:\AdwCleaner
2015-08-25 13:13 - 2015-08-25 13:13 - 01605632 _____ C:\Users\Name\Desktop\AdwCleaner_5.003.exe
2015-08-25 11:34 - 2015-08-14 03:50 - 00794088 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-08-25 11:34 - 2015-08-14 03:50 - 00179688 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-08-25 00:21 - 2015-08-25 00:21 - 00000000 ____D C:\Windows\system32\appraiser
2015-08-24 22:49 - 2015-08-24 22:51 - 00000000 ____D C:\Windows\system32\MRT
2015-08-24 22:49 - 2015-07-28 10:59 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-08-24 17:47 - 2015-06-27 13:47 - 00118616 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-08-24 17:46 - 2015-07-22 16:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-08-24 17:46 - 2015-07-22 15:52 - 01633792 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-08-24 17:46 - 2015-07-17 16:15 - 00951296 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-08-24 17:46 - 2015-07-17 16:10 - 00749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-08-24 17:46 - 2015-07-09 18:14 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-08-24 17:46 - 2015-07-03 23:51 - 01380056 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-08-24 17:46 - 2015-07-03 16:00 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-08-24 17:46 - 2015-06-19 19:07 - 02819072 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-08-24 17:46 - 2014-11-17 22:17 - 00672984 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-08-24 17:46 - 2014-11-17 22:17 - 00273240 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-08-24 17:46 - 2014-11-14 08:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2015-08-24 17:46 - 2014-11-14 08:46 - 02171904 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-08-24 17:45 - 2015-07-14 05:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tzsync.exe
2015-08-24 17:45 - 2015-07-13 21:10 - 00411455 _____ C:\Windows\system32\ApnDatabase.xml
2015-08-24 17:45 - 2015-05-01 03:13 - 06521800 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-08-24 17:45 - 2015-05-01 03:13 - 01488000 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-08-24 17:45 - 2015-05-01 03:13 - 00261376 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2015-08-24 17:45 - 2014-10-29 06:04 - 00124992 _____ (Microsoft Corporation) C:\Windows\system32\cryptxml.dll
2015-08-24 17:45 - 2014-10-29 05:15 - 00099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptxml.dll
2015-08-24 17:44 - 2015-07-10 21:06 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2015-08-24 17:44 - 2015-06-10 00:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-08-24 17:44 - 2015-06-10 00:39 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-08-24 17:44 - 2015-06-10 00:38 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-08-24 17:42 - 2015-08-24 17:42 - 00000000 ____D C:\Program Files\Common Files\Atheros
2015-08-24 17:41 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-08-24 17:41 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-08-24 17:41 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-08-24 17:41 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-08-24 17:41 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-08-24 17:41 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-08-24 17:41 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-08-24 17:41 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-08-24 17:41 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-08-24 17:41 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-08-24 17:41 - 2014-11-14 08:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll
2015-08-24 17:40 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-08-24 17:40 - 2014-10-31 00:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-08-24 17:40 - 2014-10-31 00:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-08-24 17:33 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-24 17:33 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-24 17:33 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-24 17:33 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-08-24 17:33 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-08-24 17:33 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-08-24 17:33 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-08-24 17:33 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-08-24 17:33 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2015-08-24 17:33 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2015-08-24 17:33 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-08-24 17:33 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-08-24 17:33 - 2014-11-04 21:25 - 00059712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2015-08-24 17:33 - 2014-11-04 21:25 - 00051008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2015-08-24 17:33 - 2014-11-04 08:55 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2015-08-24 17:33 - 2014-11-04 08:54 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys
2015-08-24 17:33 - 2014-11-04 08:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-08-24 17:33 - 2014-11-04 08:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2015-08-24 17:32 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-08-24 17:32 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-08-24 17:32 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-08-24 17:32 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-08-24 17:32 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-08-24 17:32 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-08-24 17:32 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-08-24 17:32 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-08-24 17:32 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-08-24 17:32 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-08-24 17:32 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-08-24 17:32 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-08-24 17:32 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-08-24 17:32 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-08-24 17:32 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-08-24 17:32 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-08-24 17:32 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-08-24 17:32 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-08-24 17:32 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-08-24 17:32 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-08-24 17:32 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-08-24 17:32 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2015-08-24 17:32 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-08-24 17:32 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-08-24 17:32 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-08-24 17:32 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-08-24 17:32 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-08-24 17:32 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-08-24 17:32 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-24 17:32 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-24 17:32 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-08-24 17:32 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-08-24 17:32 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-08-24 17:32 - 2015-04-16 08:17 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2015-08-24 17:32 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-08-24 17:32 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-08-24 17:32 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-08-24 17:32 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-08-24 17:32 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-08-24 17:32 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-08-24 17:32 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-08-24 17:32 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-08-24 17:32 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-08-24 17:32 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-08-24 17:32 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-08-24 17:32 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-08-24 17:32 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2015-08-24 17:32 - 2015-01-30 05:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-08-24 17:32 - 2015-01-30 05:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-08-24 17:32 - 2014-10-07 08:54 - 00189248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS
2015-08-24 17:31 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-24 17:31 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-24 17:31 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-24 17:31 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-24 17:31 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-24 17:31 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-24 17:31 - 2015-07-16 21:53 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-08-24 17:31 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-08-24 17:31 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-08-24 17:31 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-08-24 17:31 - 2015-07-16 21:45 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-08-24 17:31 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-08-24 17:31 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-08-24 17:31 - 2015-07-16 21:38 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-08-24 17:31 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-24 17:31 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-24 17:31 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-24 17:31 - 2015-07-16 21:14 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-08-24 17:31 - 2015-07-16 21:13 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-08-24 17:31 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-08-24 17:31 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-24 17:31 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-08-24 17:31 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-08-24 17:31 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-24 17:31 - 2015-07-16 20:52 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-08-24 17:31 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-08-24 17:31 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-08-24 17:31 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-08-24 17:31 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-08-24 17:31 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-08-24 17:31 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-08-24 17:31 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-08-24 17:31 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-24 17:31 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-24 17:31 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-08-24 17:31 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-08-24 17:31 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-08-24 17:31 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-08-24 17:31 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-08-24 17:31 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-08-24 17:31 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-08-24 17:31 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-08-24 17:31 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-08-24 17:31 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-08-24 17:31 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-08-24 17:31 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-08-24 17:31 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-08-24 17:31 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-08-24 17:31 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-08-24 17:31 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-08-24 17:31 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2015-08-24 17:31 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2015-08-24 17:31 - 2015-03-17 19:26 - 00467776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-08-24 17:31 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-08-24 17:31 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-08-24 17:31 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-24 17:31 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-08-24 17:30 - 2015-07-07 11:40 - 00114520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-08-24 17:30 - 2015-07-07 11:40 - 00044560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-08-24 17:30 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-08-24 17:30 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-08-24 17:30 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-08-24 17:30 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-08-24 17:30 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-08-24 17:30 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-08-24 17:30 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll
2015-08-24 17:30 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2015-08-24 17:30 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2015-08-24 17:30 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-08-24 17:30 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-08-24 17:30 - 2014-10-29 04:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-08-24 17:30 - 2014-10-29 04:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-08-24 17:30 - 2014-10-29 04:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-08-24 17:30 - 2014-10-29 04:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-08-24 17:29 - 2015-07-07 11:40 - 00270168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-08-24 17:29 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-08-24 17:29 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-08-24 17:29 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-08-24 17:29 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-08-24 17:29 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-08-24 17:29 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-08-24 17:29 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-08-24 17:29 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-08-24 17:29 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-08-24 17:29 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-08-24 17:29 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-08-24 17:29 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-08-24 17:29 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-08-24 17:29 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-08-24 17:29 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-08-24 17:29 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-08-24 17:29 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-08-24 17:29 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-08-24 17:29 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-08-24 17:29 - 2015-03-09 04:02 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-08-24 17:29 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-08-24 17:29 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-08-24 17:29 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-08-24 17:29 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-08-24 17:29 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-08-24 17:29 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-08-24 17:29 - 2014-11-10 04:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-08-24 17:29 - 2014-11-10 03:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2015-08-24 17:29 - 2014-10-29 06:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-08-24 17:29 - 2014-10-29 06:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2015-08-24 17:29 - 2014-10-29 05:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-08-24 17:29 - 2014-10-29 05:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-08-24 17:29 - 2014-10-29 05:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-08-24 17:29 - 2014-10-29 05:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-08-24 17:29 - 2014-10-29 05:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-08-24 17:29 - 2014-10-29 05:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2015-08-24 17:29 - 2014-10-29 05:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-08-24 17:29 - 2014-10-29 05:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-08-24 17:29 - 2014-10-29 05:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-08-24 17:29 - 2014-10-29 03:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2015-08-24 17:29 - 2014-07-10 06:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll
2015-08-24 17:28 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-08-24 17:28 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-08-24 17:28 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-08-24 17:28 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-08-24 17:28 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-08-24 17:28 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-08-24 17:28 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-08-24 17:28 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-08-24 17:28 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-08-24 17:28 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-08-24 17:28 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-08-24 17:28 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-08-24 17:28 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-08-24 17:28 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-08-24 17:28 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-08-24 17:28 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-08-24 17:28 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-08-24 17:28 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-08-24 17:28 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-08-24 17:28 - 2014-12-12 04:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-08-24 17:28 - 2014-10-31 01:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-08-24 17:28 - 2014-10-31 01:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-08-24 17:28 - 2014-10-29 04:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-08-24 17:28 - 2014-10-29 04:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-08-24 17:28 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-08-24 17:28 - 2014-10-29 03:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-08-24 17:28 - 2014-10-29 03:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-08-24 17:28 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2015-08-24 17:28 - 2014-10-29 02:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-08-24 17:27 - 2014-10-31 06:50 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe
2015-08-24 17:27 - 2014-10-31 05:30 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-08-24 17:27 - 2014-10-31 05:23 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-08-24 17:27 - 2014-10-31 05:22 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2015-08-24 17:27 - 2014-10-31 05:18 - 04840960 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-08-24 17:27 - 2014-10-31 05:09 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-08-24 17:27 - 2014-10-31 04:12 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2015-08-24 17:24 - 2014-10-29 05:58 - 00014528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2015-08-24 17:24 - 2014-10-29 03:02 - 14354944 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-08-24 17:24 - 2014-10-29 02:52 - 15432704 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-08-24 17:24 - 2014-10-29 02:50 - 12749824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-08-24 17:23 - 2014-10-29 02:45 - 13318144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-08-24 17:22 - 2014-10-29 05:59 - 03460472 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2015-08-24 17:22 - 2014-10-29 05:59 - 00014144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
2015-08-24 17:22 - 2014-10-29 05:57 - 03138720 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2015-08-24 17:22 - 2014-10-29 05:52 - 02334080 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-08-24 17:22 - 2014-10-29 05:07 - 02324208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-08-24 17:22 - 2014-10-29 04:29 - 04483072 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2015-08-24 17:22 - 2014-10-29 03:56 - 03754496 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2015-08-24 17:22 - 2014-10-29 03:51 - 00941056 _____ (Microsoft Corporation) C:\Windows\system32\XpsFilt.dll
2015-08-24 17:22 - 2014-10-29 03:45 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\rdpinput.exe
2015-08-24 17:22 - 2014-10-29 03:43 - 07075328 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll
2015-08-24 17:22 - 2014-10-29 03:40 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2015-08-24 17:22 - 2014-10-29 03:39 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2015-08-24 17:22 - 2014-10-29 03:38 - 04690432 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2015-08-24 17:22 - 2014-10-29 03:35 - 04709888 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-08-24 17:22 - 2014-10-29 03:28 - 03820544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-08-24 17:22 - 2014-10-29 03:26 - 03561984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2015-08-24 17:22 - 2014-10-29 03:16 - 05267968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll
2015-08-24 17:22 - 2014-10-29 03:03 - 04067840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-08-24 17:22 - 2014-10-29 02:46 - 09530368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-08-24 17:22 - 2014-10-29 02:37 - 06386176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-08-24 17:22 - 2014-10-07 08:45 - 03307112 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-08-24 17:22 - 2014-10-07 05:44 - 02890296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-08-24 17:21 - 2014-10-29 06:10 - 01816008 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2015-08-24 17:21 - 2014-10-29 06:00 - 02314952 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-08-24 17:21 - 2014-10-29 06:00 - 02229168 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-08-24 17:21 - 2014-10-29 05:57 - 03118096 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2015-08-24 17:21 - 2014-10-29 05:57 - 02745160 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-08-24 17:21 - 2014-10-29 05:57 - 02450216 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2015-08-24 17:21 - 2014-10-29 05:57 - 01286048 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2015-08-24 17:21 - 2014-10-29 05:55 - 02174976 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2015-08-24 17:21 - 2014-10-29 05:55 - 01543768 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2015-08-24 17:21 - 2014-10-29 05:52 - 01518504 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-08-24 17:21 - 2014-10-29 05:52 - 01509688 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-08-24 17:21 - 2014-10-29 05:52 - 01288096 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2015-08-24 17:21 - 2014-10-29 05:52 - 01165744 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2015-08-24 17:21 - 2014-10-29 05:12 - 01946144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-08-24 17:21 - 2014-10-29 05:12 - 01907384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-08-24 17:21 - 2014-10-29 05:11 - 02689392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL
2015-08-24 17:21 - 2014-10-29 05:11 - 02528760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-08-24 17:21 - 2014-10-29 05:11 - 02447104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
2015-08-24 17:21 - 2014-10-29 05:11 - 01024200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll
2015-08-24 17:21 - 2014-10-29 05:10 - 01564464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2015-08-24 17:21 - 2014-10-29 04:25 - 00785920 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-08-24 17:21 - 2014-10-29 03:57 - 02924032 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2015-08-24 17:21 - 2014-10-29 03:47 - 02072064 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2015-08-24 17:21 - 2014-10-29 03:35 - 03256320 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-08-24 17:21 - 2014-10-29 03:31 - 02941952 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2015-08-24 17:21 - 2014-10-29 03:24 - 02464768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll

FRST.txt Teil 2:

Code:

2015-08-24 17:21 - 2014-10-29 03:24 - 02364928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2015-08-24 17:21 - 2014-10-29 03:23 - 01500672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-08-24 17:21 - 2014-10-29 03:18 - 01753600 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-08-24 17:21 - 2014-10-29 03:17 - 01360896 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-08-24 17:21 - 2014-10-29 03:11 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2015-08-24 17:21 - 2014-10-29 03:10 - 02469888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-08-24 17:21 - 2014-10-29 03:08 - 02608640 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-08-24 17:21 - 2014-10-29 03:08 - 02542080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2015-08-24 17:21 - 2014-10-29 03:08 - 02174976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-24 17:21 - 2014-10-29 03:08 - 01822720 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll
2015-08-24 17:21 - 2014-10-29 03:05 - 03273216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2015-08-24 17:21 - 2014-10-29 03:03 - 02635264 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2015-08-24 17:21 - 2014-10-29 03:03 - 02487296 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-08-24 17:21 - 2014-10-29 02:59 - 01490944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-08-24 17:21 - 2014-10-29 02:52 - 02170368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-08-24 17:21 - 2014-10-29 02:52 - 01461248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dui70.dll
2015-08-24 17:21 - 2014-10-29 02:52 - 01275904 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-08-24 17:21 - 2014-10-29 02:50 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2015-08-24 17:21 - 2014-10-29 02:48 - 03056128 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2015-08-24 17:21 - 2014-10-29 02:46 - 01919488 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-08-24 17:21 - 2014-10-29 02:46 - 01348096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-08-24 17:21 - 2014-10-29 02:45 - 01725952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2015-08-24 17:21 - 2014-10-29 02:42 - 01221120 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-08-24 17:21 - 2014-10-29 02:35 - 01668096 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2015-08-24 17:21 - 2014-10-29 02:34 - 01544192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2015-08-24 17:21 - 2014-10-15 10:32 - 02025792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-08-24 17:20 - 2014-10-29 05:57 - 01576312 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-08-24 17:20 - 2014-10-29 05:57 - 01210176 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2015-08-24 17:20 - 2014-10-29 05:55 - 01133200 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 01064720 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00988544 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00952384 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00850656 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00821696 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00634768 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-08-24 17:20 - 2014-10-29 05:52 - 00580024 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2015-08-24 17:20 - 2014-10-29 05:18 - 00016504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psapi.dll
2015-08-24 17:20 - 2014-10-29 05:11 - 01037656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2015-08-24 17:20 - 2014-10-29 05:10 - 01178104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 01321192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 01115104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 00857384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 00801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 00785568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 00705008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-08-24 17:20 - 2014-10-29 05:07 - 00700328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2015-08-24 17:20 - 2014-10-29 05:05 - 00890128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-08-24 17:20 - 2014-10-29 04:50 - 01192960 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2015-08-24 17:20 - 2014-10-29 04:31 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\sqlceqp40.dll
2015-08-24 17:20 - 2014-10-29 04:29 - 01246720 _____ (Microsoft Corporation) C:\Windows\system32\ogldrv.dll
2015-08-24 17:20 - 2014-10-29 04:28 - 01502208 _____ (Microsoft Corporation) C:\Windows\system32\xpssvcs.dll
2015-08-24 17:20 - 2014-10-29 04:17 - 02003456 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2015-08-24 17:20 - 2014-10-29 04:08 - 01540096 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2015-08-24 17:20 - 2014-10-29 03:56 - 01526784 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2015-08-24 17:20 - 2014-10-29 03:56 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2015-08-24 17:20 - 2014-10-29 03:55 - 01697280 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-08-24 17:20 - 2014-10-29 03:53 - 00881152 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2015-08-24 17:20 - 2014-10-29 03:50 - 01289216 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2015-08-24 17:20 - 2014-10-29 03:49 - 00742400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlceqp40.dll
2015-08-24 17:20 - 2014-10-29 03:48 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2015-08-24 17:20 - 2014-10-29 03:45 - 00618496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-08-24 17:20 - 2014-10-29 03:43 - 01092608 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-08-24 17:20 - 2014-10-29 03:43 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2015-08-24 17:20 - 2014-10-29 03:42 - 03724800 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2015-08-24 17:20 - 2014-10-29 03:37 - 01563136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2015-08-24 17:20 - 2014-10-29 03:34 - 01114624 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-08-24 17:20 - 2014-10-29 03:34 - 01037824 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-08-24 17:20 - 2014-10-29 03:33 - 01056768 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2015-08-24 17:20 - 2014-10-29 03:32 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2015-08-24 17:20 - 2014-10-29 03:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-08-24 17:20 - 2014-10-29 03:25 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2015-08-24 17:20 - 2014-10-29 03:22 - 02410496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2015-08-24 17:20 - 2014-10-29 03:22 - 01084416 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-08-24 17:20 - 2014-10-29 03:19 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2015-08-24 17:20 - 2014-10-29 03:18 - 01050624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll
2015-08-24 17:20 - 2014-10-29 03:17 - 01402368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2015-08-24 17:20 - 2014-10-29 03:17 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2015-08-24 17:20 - 2014-10-29 03:14 - 03553280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2015-08-24 17:20 - 2014-10-29 03:14 - 00802816 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-08-24 17:20 - 2014-10-29 03:09 - 01335296 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-08-24 17:20 - 2014-10-29 03:08 - 01478144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2015-08-24 17:20 - 2014-10-29 03:07 - 01247232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2015-08-24 17:20 - 2014-10-29 03:06 - 00747520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2015-08-24 17:20 - 2014-10-29 03:03 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-08-24 17:20 - 2014-10-29 03:01 - 01710592 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2015-08-24 17:20 - 2014-10-29 03:01 - 00843776 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-08-24 17:20 - 2014-10-29 03:00 - 01705984 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-08-24 17:20 - 2014-10-29 02:59 - 01636864 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2015-08-24 17:20 - 2014-10-29 02:59 - 01454080 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-08-24 17:20 - 2014-10-29 02:56 - 01337344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-08-24 17:20 - 2014-10-29 02:56 - 01248256 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2015-08-24 17:20 - 2014-10-29 02:56 - 01028608 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-08-24 17:20 - 2014-10-29 02:56 - 01001984 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2015-08-24 17:20 - 2014-10-29 02:53 - 01063424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-08-24 17:20 - 2014-10-29 02:52 - 01265152 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-08-24 17:20 - 2014-10-29 02:52 - 00801792 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2015-08-24 17:20 - 2014-10-29 02:50 - 01482752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-08-24 17:20 - 2014-10-29 02:48 - 01344000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-08-24 17:20 - 2014-10-29 02:46 - 01015808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-08-24 17:20 - 2014-10-29 02:45 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-08-24 17:20 - 2014-10-29 02:42 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2015-08-24 17:20 - 2014-10-29 02:41 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-08-24 17:20 - 2014-10-29 02:41 - 01317376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2015-08-24 17:20 - 2014-10-29 02:40 - 02104832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll
2015-08-24 17:20 - 2014-10-29 02:39 - 01000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-08-24 17:20 - 2014-10-29 02:38 - 01262080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-08-24 17:20 - 2014-10-29 02:37 - 00724480 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-08-24 17:20 - 2014-10-29 02:36 - 00954880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-08-24 17:20 - 2014-10-29 02:33 - 01102848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2015-08-24 17:19 - 2014-10-29 06:09 - 01950280 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2015-08-24 17:19 - 2014-10-29 06:09 - 01239576 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2015-08-24 17:19 - 2014-10-29 06:00 - 01540696 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-08-24 17:19 - 2014-10-29 06:00 - 00740664 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-08-24 17:19 - 2014-10-29 06:00 - 00544408 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-08-24 17:19 - 2014-10-29 06:00 - 00379568 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-08-24 17:19 - 2014-10-29 05:57 - 01552704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-08-24 17:19 - 2014-10-29 05:57 - 00643064 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-08-24 17:19 - 2014-10-29 05:57 - 00557832 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2015-08-24 17:19 - 2014-10-29 05:55 - 01063432 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2015-08-24 17:19 - 2014-10-29 05:55 - 00730824 _____ (Microsoft Corporation) C:\Windows\system32\clbcatq.dll
2015-08-24 17:19 - 2014-10-29 05:52 - 00734448 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-08-24 17:19 - 2014-10-29 05:52 - 00497936 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-08-24 17:19 - 2014-10-29 05:52 - 00444728 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2015-08-24 17:19 - 2014-10-29 05:52 - 00405456 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-08-24 17:19 - 2014-10-29 05:18 - 01782912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2015-08-24 17:19 - 2014-10-29 05:18 - 01103768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2015-08-24 17:19 - 2014-10-29 05:18 - 00848568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2015-08-24 17:19 - 2014-10-29 05:12 - 00616704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-08-24 17:19 - 2014-10-29 05:11 - 00914648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2015-08-24 17:19 - 2014-10-29 05:10 - 01287112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-08-24 17:19 - 2014-10-29 05:10 - 00569128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clbcatq.dll
2015-08-24 17:19 - 2014-10-29 05:10 - 00492232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-08-24 17:19 - 2014-10-29 05:07 - 00584120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-08-24 17:19 - 2014-10-29 05:07 - 00551064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-08-24 17:19 - 2014-10-29 05:07 - 00482360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll
2015-08-24 17:19 - 2014-10-29 05:07 - 00409040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-08-24 17:19 - 2014-10-29 04:56 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2015-08-24 17:19 - 2014-10-29 04:48 - 00925696 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2015-08-24 17:19 - 2014-10-29 04:48 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx02000.dll
2015-08-24 17:19 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-08-24 17:19 - 2014-10-29 04:43 - 00685056 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2015-08-24 17:19 - 2014-10-29 04:36 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese40.dll
2015-08-24 17:19 - 2014-10-29 04:33 - 07558144 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0011.dll
2015-08-24 17:19 - 2014-10-29 04:33 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2015-08-24 17:19 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70804.dll
2015-08-24 17:19 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70404.dll
2015-08-24 17:19 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7001E.dll
2015-08-24 17:19 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70011.dll
2015-08-24 17:19 - 2014-10-29 04:29 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\dsound.dll
2015-08-24 17:19 - 2014-10-29 04:27 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-08-24 17:19 - 2014-10-29 04:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2015-08-24 17:19 - 2014-10-29 04:26 - 00771584 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2015-08-24 17:19 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-08-24 17:19 - 2014-10-29 04:18 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2015-08-24 17:19 - 2014-10-29 04:11 - 01070080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2015-08-24 17:19 - 2014-10-29 04:09 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2015-08-24 17:19 - 2014-10-29 04:08 - 00858624 _____ (Microsoft Corporation) C:\Windows\system32\comuid.dll
2015-08-24 17:19 - 2014-10-29 04:08 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-08-24 17:19 - 2014-10-29 04:08 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2015-08-24 17:19 - 2014-10-29 04:07 - 06692352 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2015-08-24 17:19 - 2014-10-29 04:07 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-08-24 17:19 - 2014-10-29 04:06 - 00980480 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2015-08-24 17:19 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2015-08-24 17:19 - 2014-10-29 04:03 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-08-24 17:19 - 2014-10-29 04:03 - 00832000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2015-08-24 17:19 - 2014-10-29 03:59 - 00670720 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2015-08-24 17:19 - 2014-10-29 03:59 - 00564224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll
2015-08-24 17:19 - 2014-10-29 03:57 - 01038336 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2015-08-24 17:19 - 2014-10-29 03:53 - 01065984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2015-08-24 17:19 - 2014-10-29 03:50 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll
2015-08-24 17:19 - 2014-10-29 03:49 - 02236416 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2015-08-24 17:19 - 2014-10-29 03:47 - 01096192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ogldrv.dll
2015-08-24 17:19 - 2014-10-29 03:47 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpssvcs.dll
2015-08-24 17:19 - 2014-10-29 03:46 - 01497600 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2015-08-24 17:19 - 2014-10-29 03:45 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-08-24 17:19 - 2014-10-29 03:45 - 00672768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2015-08-24 17:19 - 2014-10-29 03:42 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.dll
2015-08-24 17:19 - 2014-10-29 03:39 - 01571328 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2015-08-24 17:19 - 2014-10-29 03:39 - 00898048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2015-08-24 17:19 - 2014-10-29 03:37 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2015-08-24 17:19 - 2014-10-29 03:36 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-08-24 17:19 - 2014-10-29 03:36 - 01252864 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2015-08-24 17:19 - 2014-10-29 03:36 - 00609792 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-08-24 17:19 - 2014-10-29 03:36 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2015-08-24 17:19 - 2014-10-29 03:35 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2015-08-24 17:19 - 2014-10-29 03:32 - 00654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comuid.dll
2015-08-24 17:19 - 2014-10-29 03:32 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll
2015-08-24 17:19 - 2014-10-29 03:31 - 01278464 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-08-24 17:19 - 2014-10-29 03:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-08-24 17:19 - 2014-10-29 03:30 - 06465536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2015-08-24 17:19 - 2014-10-29 03:30 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-08-24 17:19 - 2014-10-29 03:29 - 00833536 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2015-08-24 17:19 - 2014-10-29 03:26 - 00838656 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-08-24 17:19 - 2014-10-29 03:24 - 00845312 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-08-24 17:19 - 2014-10-29 03:23 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2015-08-24 17:19 - 2014-10-29 03:19 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\WinSync.dll
2015-08-24 17:19 - 2014-10-29 03:16 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-08-24 17:19 - 2014-10-29 03:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-08-24 17:19 - 2014-10-29 03:14 - 00854528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2015-08-24 17:19 - 2014-10-29 03:14 - 00737280 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-08-24 17:19 - 2014-10-29 03:14 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-08-24 17:19 - 2014-10-29 03:12 - 00702976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2015-08-24 17:19 - 2014-10-29 03:12 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\msTextPrediction.dll
2015-08-24 17:19 - 2014-10-29 03:12 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-08-24 17:19 - 2014-10-29 03:12 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2015-08-24 17:19 - 2014-10-29 03:11 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2015-08-24 17:19 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-08-24 17:19 - 2014-10-29 03:09 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\provcore.dll
2015-08-24 17:19 - 2014-10-29 03:09 - 00809984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-08-24 17:19 - 2014-10-29 03:09 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-08-24 17:19 - 2014-10-29 03:09 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll
2015-08-24 17:19 - 2014-10-29 03:08 - 00881664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2015-08-24 17:19 - 2014-10-29 03:07 - 01396736 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-08-24 17:19 - 2014-10-29 03:07 - 01197056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2015-08-24 17:19 - 2014-10-29 03:07 - 01060352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2015-08-24 17:19 - 2014-10-29 03:07 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2015-08-24 17:19 - 2014-10-29 03:07 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-08-24 17:19 - 2014-10-29 03:06 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2015-08-24 17:19 - 2014-10-29 03:06 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-08-24 17:19 - 2014-10-29 03:05 - 00606720 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-08-24 17:19 - 2014-10-29 03:04 - 01376256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-08-24 17:19 - 2014-10-29 03:04 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2015-08-24 17:19 - 2014-10-29 03:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-08-24 17:19 - 2014-10-29 03:03 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2015-08-24 17:19 - 2014-10-29 03:03 - 00740352 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2015-08-24 17:19 - 2014-10-29 03:02 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2015-08-24 17:19 - 2014-10-29 03:02 - 00695296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2015-08-24 17:19 - 2014-10-29 03:01 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-08-24 17:19 - 2014-10-29 03:00 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2015-08-24 17:19 - 2014-10-29 03:00 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2015-08-24 17:19 - 2014-10-29 02:59 - 01010688 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2015-08-24 17:19 - 2014-10-29 02:59 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-08-24 17:19 - 2014-10-29 02:59 - 00578048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSync.dll
2015-08-24 17:19 - 2014-10-29 02:58 - 00926208 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-08-24 17:19 - 2014-10-29 02:56 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-08-24 17:19 - 2014-10-29 02:56 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2015-08-24 17:19 - 2014-10-29 02:56 - 00631808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2015-08-24 17:19 - 2014-10-29 02:55 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2015-08-24 17:19 - 2014-10-29 02:54 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-08-24 17:19 - 2014-10-29 02:54 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2015-08-24 17:19 - 2014-10-29 02:52 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2015-08-24 17:19 - 2014-10-29 02:52 - 00827392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2015-08-24 17:19 - 2014-10-29 02:52 - 00555008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2015-08-24 17:19 - 2014-10-29 02:51 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll
2015-08-24 17:19 - 2014-10-29 02:51 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2015-08-24 17:19 - 2014-10-29 02:50 - 00589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2015-08-24 17:19 - 2014-10-29 02:48 - 01142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2015-08-24 17:19 - 2014-10-29 02:48 - 00949760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2015-08-24 17:19 - 2014-10-29 02:48 - 00562688 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2015-08-24 17:19 - 2014-10-29 02:47 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2015-08-24 17:19 - 2014-10-29 02:47 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2015-08-24 17:19 - 2014-10-29 02:46 - 01265152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2015-08-24 17:19 - 2014-10-29 02:45 - 00918016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2015-08-24 17:19 - 2014-10-29 02:45 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2015-08-24 17:19 - 2014-10-29 02:45 - 00573952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll
2015-08-24 17:19 - 2014-10-29 02:45 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2015-08-24 17:19 - 2014-10-29 02:43 - 00720896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2015-08-24 17:19 - 2014-10-29 02:43 - 00624640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-08-24 17:19 - 2014-10-29 02:42 - 01207808 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-08-24 17:19 - 2014-10-29 02:42 - 00654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2015-08-24 17:19 - 2014-10-29 02:42 - 00608256 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2015-08-24 17:19 - 2014-10-29 02:40 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-08-24 17:19 - 2014-10-29 02:36 - 00955392 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-08-24 17:19 - 2014-10-29 02:35 - 01085952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2015-08-24 17:19 - 2014-10-29 02:35 - 00772096 _____ (Microsoft Corporation) C:\Windows\system32\MrmIndexer.dll
2015-08-24 17:19 - 2014-10-29 02:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2015-08-24 17:19 - 2014-10-29 02:35 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-08-24 17:19 - 2014-10-29 02:32 - 00515584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-08-24 17:19 - 2014-10-29 02:31 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-08-24 17:19 - 2014-10-29 02:30 - 00602624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmIndexer.dll
2015-08-24 17:19 - 2014-07-04 23:29 - 00478528 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-08-24 17:18 - 2014-10-29 06:10 - 00430728 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2015-08-24 17:18 - 2014-10-29 06:09 - 01309744 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-08-24 17:18 - 2014-10-29 06:04 - 00397192 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-08-24 17:18 - 2014-10-29 06:04 - 00324864 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-08-24 17:18 - 2014-10-29 05:59 - 00520536 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2015-08-24 17:18 - 2014-10-29 05:57 - 01150208 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2015-08-24 17:18 - 2014-10-29 05:57 - 00725672 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2015-08-24 17:18 - 2014-10-29 05:57 - 00662120 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.exe
2015-08-24 17:18 - 2014-10-29 05:57 - 00389952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-08-24 17:18 - 2014-10-29 05:55 - 00426120 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2015-08-24 17:18 - 2014-10-29 05:55 - 00019264 _____ (Microsoft Corporation) C:\Windows\system32\dllhost.exe
2015-08-24 17:18 - 2014-10-29 05:54 - 00685408 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-08-24 17:18 - 2014-10-29 05:52 - 00356936 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2015-08-24 17:18 - 2014-10-29 05:52 - 00020160 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll
2015-08-24 17:18 - 2014-10-29 05:18 - 00320736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2015-08-24 17:18 - 2014-10-29 05:12 - 00430176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-08-24 17:18 - 2014-10-29 05:11 - 00492704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2015-08-24 17:18 - 2014-10-29 05:11 - 00488064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2015-08-24 17:18 - 2014-10-29 05:10 - 00547992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2015-08-24 17:18 - 2014-10-29 05:10 - 00367248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2015-08-24 17:18 - 2014-10-29 05:07 - 00399752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-08-24 17:18 - 2014-10-29 05:07 - 00331048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2015-08-24 17:18 - 2014-10-29 05:07 - 00320256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2015-08-24 17:18 - 2014-10-29 05:06 - 00507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-08-24 17:18 - 2014-10-29 04:45 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\glmf32.dll
2015-08-24 17:18 - 2014-10-29 04:45 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-08-24 17:18 - 2014-10-29 04:42 - 01091584 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll
2015-08-24 17:18 - 2014-10-29 04:40 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2015-08-24 17:18 - 2014-10-29 04:37 - 02329088 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0404.dll
2015-08-24 17:18 - 2014-10-29 04:34 - 03438592 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0804.dll
2015-08-24 17:18 - 2014-10-29 04:31 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2015-08-24 17:18 - 2014-10-29 04:31 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2015-08-24 17:18 - 2014-10-29 04:28 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2015-08-24 17:18 - 2014-10-29 04:26 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\SmartCardSimulator.dll
2015-08-24 17:18 - 2014-10-29 04:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2015-08-24 17:18 - 2014-10-29 04:25 - 00995328 _____ (Microsoft Corporation) C:\Windows\system32\tapi3.dll
2015-08-24 17:18 - 2014-10-29 04:25 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\sdohlp.dll
2015-08-24 17:18 - 2014-10-29 04:25 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2015-08-24 17:18 - 2014-10-29 04:24 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2015-08-24 17:18 - 2014-10-29 04:23 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\offfilt.dll
2015-08-24 17:18 - 2014-10-29 04:21 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\iassdo.dll
2015-08-24 17:18 - 2014-10-29 04:20 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2015-08-24 17:18 - 2014-10-29 04:19 - 09732096 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000a.dll
2015-08-24 17:18 - 2014-10-29 04:18 - 06259712 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0009.dll
2015-08-24 17:18 - 2014-10-29 04:18 - 04616704 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001d.dll
2015-08-24 17:18 - 2014-10-29 04:18 - 02403328 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000c.dll
2015-08-24 17:18 - 2014-10-29 04:18 - 02140672 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0007.dll
2015-08-24 17:18 - 2014-10-29 04:17 - 04621312 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0414.dll
2015-08-24 17:18 - 2014-10-29 04:17 - 04620288 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll
2015-08-24 17:18 - 2014-10-29 04:17 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000d.dll
2015-08-24 17:18 - 2014-10-29 04:16 - 04621312 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0010.dll
2015-08-24 17:18 - 2014-10-29 04:16 - 04616704 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0416.dll
2015-08-24 17:18 - 2014-10-29 04:16 - 00546816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2015-08-24 17:18 - 2014-10-29 04:11 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2015-08-24 17:18 - 2014-10-29 04:11 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2015-08-24 17:18 - 2014-10-29 04:11 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll
2015-08-24 17:18 - 2014-10-29 04:08 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2015-08-24 17:18 - 2014-10-29 04:08 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\difxapi.dll
2015-08-24 17:18 - 2014-10-29 04:06 - 02902016 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2015-08-24 17:18 - 2014-10-29 04:06 - 01313792 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2015-08-24 17:18 - 2014-10-29 04:06 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2015-08-24 17:18 - 2014-10-29 04:05 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll
2015-08-24 17:18 - 2014-10-29 04:03 - 02334720 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2015-08-24 17:18 - 2014-10-29 04:01 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-08-24 17:18 - 2014-10-29 04:00 - 01861632 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-08-24 17:18 - 2014-10-29 04:00 - 00652800 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2015-08-24 17:18 - 2014-10-29 03:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-08-24 17:18 - 2014-10-29 03:59 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\SyncInfrastructure.dll
2015-08-24 17:18 - 2014-10-29 03:58 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-08-24 17:18 - 2014-10-29 03:57 - 02592256 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2015-08-24 17:18 - 2014-10-29 03:57 - 01479168 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2015-08-24 17:18 - 2014-10-29 03:57 - 00777728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll
2015-08-24 17:18 - 2014-10-29 03:56 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2015-08-24 17:18 - 2014-10-29 03:56 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2015-08-24 17:18 - 2014-10-29 03:54 - 00833536 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-08-24 17:18 - 2014-10-29 03:54 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-08-24 17:18 - 2014-10-29 03:54 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2015-08-24 17:18 - 2014-10-29 03:54 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2015-08-24 17:18 - 2014-10-29 03:53 - 00433152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese40.dll
2015-08-24 17:18 - 2014-10-29 03:52 - 02829312 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2015-08-24 17:18 - 2014-10-29 03:52 - 00809984 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2015-08-24 17:18 - 2014-10-29 03:52 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-08-24 17:18 - 2014-10-29 03:52 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2015-08-24 17:18 - 2014-10-29 03:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\rdvvmtransport.dll
2015-08-24 17:18 - 2014-10-29 03:51 - 07331840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0011.dll
2015-08-24 17:18 - 2014-10-29 03:49 - 00479744 _____ (Microsoft Corporation) C:\Windows\system32\StikyNot.exe
2015-08-24 17:18 - 2014-10-29 03:48 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2015-08-24 17:18 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70804.dll
2015-08-24 17:18 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70404.dll
2015-08-24 17:18 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7001E.dll
2015-08-24 17:18 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70011.dll
2015-08-24 17:18 - 2014-10-29 03:47 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2015-08-24 17:18 - 2014-10-29 03:47 - 00517120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsound.dll
2015-08-24 17:18 - 2014-10-29 03:46 - 01001472 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2015-08-24 17:18 - 2014-10-29 03:46 - 00148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2015-08-24 17:18 - 2014-10-29 03:45 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-08-24 17:18 - 2014-10-29 03:44 - 00872960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi3.dll
2015-08-24 17:18 - 2014-10-29 03:42 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2015-08-24 17:18 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-08-24 17:18 - 2014-10-29 03:41 - 01411584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2015-08-24 17:18 - 2014-10-29 03:41 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll
2015-08-24 17:18 - 2014-10-29 03:38 - 04945920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0009.dll
2015-08-24 17:18 - 2014-10-29 03:36 - 00943616 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe


Wandalensalz 28.08.2015 15:16

FRST.txt Teil 3:

Code:

2015-08-24 17:18 - 2014-10-29 03:36 - 00787456 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2015-08-24 17:18 - 2014-10-29 03:34 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2015-08-24 17:18 - 2014-10-29 03:34 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswmdm.dll
2015-08-24 17:18 - 2014-10-29 03:33 - 01291776 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-08-24 17:18 - 2014-10-29 03:32 - 00512512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2015-08-24 17:18 - 2014-10-29 03:31 - 00761344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2015-08-24 17:18 - 2014-10-29 03:31 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-08-24 17:18 - 2014-10-29 03:30 - 01171456 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-08-24 17:18 - 2014-10-29 03:30 - 00579584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaaut.dll
2015-08-24 17:18 - 2014-10-29 03:30 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-08-24 17:18 - 2014-10-29 03:30 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2015-08-24 17:18 - 2014-10-29 03:30 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2015-08-24 17:18 - 2014-10-29 03:29 - 02848768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2015-08-24 17:18 - 2014-10-29 03:29 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-08-24 17:18 - 2014-10-29 03:29 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-08-24 17:18 - 2014-10-29 03:28 - 02213888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll
2015-08-24 17:18 - 2014-10-29 03:27 - 00557568 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-08-24 17:18 - 2014-10-29 03:27 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll
2015-08-24 17:18 - 2014-10-29 03:26 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll
2015-08-24 17:18 - 2014-10-29 03:25 - 01058816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-08-24 17:18 - 2014-10-29 03:24 - 01335296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2015-08-24 17:18 - 2014-10-29 03:24 - 00902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2015-08-24 17:18 - 2014-10-29 03:23 - 01826304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-08-24 17:18 - 2014-10-29 03:23 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\livessp.dll
2015-08-24 17:18 - 2014-10-29 03:22 - 02551808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2015-08-24 17:18 - 2014-10-29 03:22 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2015-08-24 17:18 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2015-08-24 17:18 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2015-08-24 17:18 - 2014-10-29 03:21 - 00482304 _____ (Microsoft Corporation) C:\Windows\system32\tpmvsc.dll
2015-08-24 17:18 - 2014-10-29 03:21 - 00349696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-08-24 17:18 - 2014-10-29 03:20 - 00524800 _____ (Microsoft Corporation) C:\Windows\system32\AppxApplicabilityEngine.dll
2015-08-24 17:18 - 2014-10-29 03:20 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2015-08-24 17:18 - 2014-10-29 03:20 - 00510464 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2015-08-24 17:18 - 2014-10-29 03:19 - 02714624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2015-08-24 17:18 - 2014-10-29 03:19 - 00754176 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2015-08-24 17:18 - 2014-10-29 03:19 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2015-08-24 17:18 - 2014-10-29 03:18 - 01984000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll
2015-08-24 17:18 - 2014-10-29 03:18 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-08-24 17:18 - 2014-10-29 03:18 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-08-24 17:18 - 2014-10-29 03:17 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll
2015-08-24 17:18 - 2014-10-29 03:17 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2015-08-24 17:18 - 2014-10-29 03:16 - 01242112 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-08-24 17:18 - 2014-10-29 03:16 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-08-24 17:18 - 2014-10-29 03:16 - 00348672 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2015-08-24 17:18 - 2014-10-29 03:16 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-08-24 17:18 - 2014-10-29 03:15 - 00809472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-08-24 17:18 - 2014-10-29 03:15 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-08-24 17:18 - 2014-10-29 03:15 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Proximity.dll
2015-08-24 17:18 - 2014-10-29 03:12 - 00393728 _____ (Microsoft Corporation) C:\Windows\system32\ninput.dll
2015-08-24 17:18 - 2014-10-29 03:11 - 02597376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2015-08-24 17:18 - 2014-10-29 03:11 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2015-08-24 17:18 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2015-08-24 17:18 - 2014-10-29 03:10 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2015-08-24 17:18 - 2014-10-29 03:09 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll
2015-08-24 17:18 - 2014-10-29 03:07 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2015-08-24 17:18 - 2014-10-29 03:07 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2015-08-24 17:18 - 2014-10-29 03:06 - 01086976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2015-08-24 17:18 - 2014-10-29 03:06 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2015-08-24 17:18 - 2014-10-29 03:06 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2015-08-24 17:18 - 2014-10-29 03:06 - 00286208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-08-24 17:18 - 2014-10-29 03:05 - 00534016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2015-08-24 17:18 - 2014-10-29 03:04 - 00640000 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2015-08-24 17:18 - 2014-10-29 03:04 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2015-08-24 17:18 - 2014-10-29 03:04 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-08-24 17:18 - 2014-10-29 03:04 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2015-08-24 17:18 - 2014-10-29 03:03 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-08-24 17:18 - 2014-10-29 03:03 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-08-24 17:18 - 2014-10-29 03:03 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-08-24 17:18 - 2014-10-29 03:01 - 00706048 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-08-24 17:18 - 2014-10-29 03:01 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-08-24 17:18 - 2014-10-29 03:01 - 00361472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2015-08-24 17:18 - 2014-10-29 03:01 - 00278528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll
2015-08-24 17:18 - 2014-10-29 03:00 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll
2015-08-24 17:18 - 2014-10-29 03:00 - 00251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-08-24 17:18 - 2014-10-29 02:59 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-08-24 17:18 - 2014-10-29 02:59 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2015-08-24 17:18 - 2014-10-29 02:59 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxApplicabilityEngine.dll
2015-08-24 17:18 - 2014-10-29 02:59 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2015-08-24 17:18 - 2014-10-29 02:58 - 00746496 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-08-24 17:18 - 2014-10-29 02:58 - 00543232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2015-08-24 17:18 - 2014-10-29 02:58 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2015-08-24 17:18 - 2014-10-29 02:57 - 01065472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-08-24 17:18 - 2014-10-29 02:57 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2015-08-24 17:18 - 2014-10-29 02:57 - 00543744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2015-08-24 17:18 - 2014-10-29 02:57 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2015-08-24 17:18 - 2014-10-29 02:57 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2015-08-24 17:18 - 2014-10-29 02:57 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-08-24 17:18 - 2014-10-29 02:56 - 00512512 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-08-24 17:18 - 2014-10-29 02:56 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2015-08-24 17:18 - 2014-10-29 02:55 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2015-08-24 17:18 - 2014-10-29 02:55 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2015-08-24 17:18 - 2014-10-29 02:55 - 00304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ninput.dll
2015-08-24 17:18 - 2014-10-29 02:53 - 00612352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll
2015-08-24 17:18 - 2014-10-29 02:53 - 00464896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-08-24 17:18 - 2014-10-29 02:52 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2015-08-24 17:18 - 2014-10-29 02:52 - 00544256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2015-08-24 17:18 - 2014-10-29 02:51 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2015-08-24 17:18 - 2014-10-29 02:51 - 00457728 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2015-08-24 17:18 - 2014-10-29 02:51 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2015-08-24 17:18 - 2014-10-29 02:51 - 00375296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2015-08-24 17:18 - 2014-10-29 02:50 - 00624128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2015-08-24 17:18 - 2014-10-29 02:50 - 00430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2015-08-24 17:18 - 2014-10-29 02:48 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\hnetcfg.dll
2015-08-24 17:18 - 2014-10-29 02:48 - 00454144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2015-08-24 17:18 - 2014-10-29 02:47 - 00527872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-08-24 17:18 - 2014-10-29 02:47 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\catsrv.dll
2015-08-24 17:18 - 2014-10-29 02:47 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-08-24 17:18 - 2014-10-29 02:47 - 00451584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2015-08-24 17:18 - 2014-10-29 02:47 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-08-24 17:18 - 2014-10-29 02:46 - 00455680 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-08-24 17:18 - 2014-10-29 02:45 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-08-24 17:18 - 2014-10-29 02:44 - 00677376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2015-08-24 17:18 - 2014-10-29 02:44 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-08-24 17:18 - 2014-10-29 02:42 - 00539648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2015-08-24 17:18 - 2014-10-29 02:42 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2015-08-24 17:18 - 2014-10-29 02:42 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2015-08-24 17:18 - 2014-10-29 02:42 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2015-08-24 17:18 - 2014-10-29 02:39 - 00565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2015-08-24 17:18 - 2014-10-29 02:39 - 00454144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hnetcfg.dll
2015-08-24 17:18 - 2014-10-29 02:39 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrv.dll
2015-08-24 17:18 - 2014-10-29 02:37 - 00414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-08-24 17:18 - 2014-10-29 02:35 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-08-24 17:18 - 2014-10-08 09:33 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-08-24 17:18 - 2014-10-07 08:44 - 00533824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-08-24 17:18 - 2014-09-10 08:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-08-24 17:17 - 2014-10-29 06:09 - 00315576 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2015-08-24 17:17 - 2014-10-29 06:09 - 00294880 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2015-08-24 17:17 - 2014-10-29 06:04 - 00217912 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-08-24 17:17 - 2014-10-29 05:59 - 00415040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-08-24 17:17 - 2014-10-29 05:59 - 00230816 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2015-08-24 17:17 - 2014-10-29 05:58 - 01797944 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2015-08-24 17:17 - 2014-10-29 05:57 - 01913128 _____ (Microsoft Corporation) C:\Windows\system32\DisplaySwitch.exe
2015-08-24 17:17 - 2014-10-29 05:57 - 00629576 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2015-08-24 17:17 - 2014-10-29 05:57 - 00339312 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2015-08-24 17:17 - 2014-10-29 05:57 - 00295432 _____ (Microsoft Corporation) C:\Windows\system32\WMASF.DLL
2015-08-24 17:17 - 2014-10-29 05:57 - 00256744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2015-08-24 17:17 - 2014-10-29 05:57 - 00217432 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2015-08-24 17:17 - 2014-10-29 05:57 - 00031496 _____ (Microsoft Corporation) C:\Windows\system32\CameraSettingsUIHost.exe
2015-08-24 17:17 - 2014-10-29 05:57 - 00027360 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsRemoveDevice.exe
2015-08-24 17:17 - 2014-10-29 05:55 - 00359496 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-08-24 17:17 - 2014-10-29 05:55 - 00305192 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2015-08-24 17:17 - 2014-10-29 05:53 - 00687496 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2015-08-24 17:17 - 2014-10-29 05:52 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2015-08-24 17:17 - 2014-10-29 05:52 - 00311448 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2015-08-24 17:17 - 2014-10-29 05:52 - 00225696 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2015-08-24 17:17 - 2014-10-29 05:51 - 00363080 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2015-08-24 17:17 - 2014-10-29 05:15 - 00340848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-08-24 17:17 - 2014-10-29 05:15 - 00245296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-08-24 17:17 - 2014-10-29 05:15 - 00192096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-08-24 17:17 - 2014-10-29 05:13 - 00185880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2015-08-24 17:17 - 2014-10-29 05:12 - 00416760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2015-08-24 17:17 - 2014-10-29 05:11 - 00463744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2015-08-24 17:17 - 2014-10-29 05:11 - 00245296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMASF.DLL
2015-08-24 17:17 - 2014-10-29 05:11 - 00191104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2015-08-24 17:17 - 2014-10-29 05:10 - 00278352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll
2015-08-24 17:17 - 2014-10-29 05:10 - 00276816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-08-24 17:17 - 2014-10-29 05:07 - 00336680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2015-08-24 17:17 - 2014-10-29 05:07 - 00260800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2015-08-24 17:17 - 2014-10-29 05:07 - 00202440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2015-08-24 17:17 - 2014-10-29 05:07 - 00019096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
2015-08-24 17:17 - 2014-10-29 05:06 - 00800008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2015-08-24 17:17 - 2014-10-29 05:05 - 00321248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2015-08-24 17:17 - 2014-10-29 04:56 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\mfh264enc.dll
2015-08-24 17:17 - 2014-10-29 04:49 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\msvcp60.dll
2015-08-24 17:17 - 2014-10-29 04:42 - 00480256 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2015-08-24 17:17 - 2014-10-29 04:41 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-08-24 17:17 - 2014-10-29 04:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2015-08-24 17:17 - 2014-10-29 04:33 - 00860672 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data001E.dll
2015-08-24 17:17 - 2014-10-29 04:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\sqlceoledb40.dll
2015-08-24 17:17 - 2014-10-29 04:30 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SensorsClassExtension.dll
2015-08-24 17:17 - 2014-10-29 04:29 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\fhengine.dll
2015-08-24 17:17 - 2014-10-29 04:27 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2015-08-24 17:17 - 2014-10-29 04:27 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2015-08-24 17:17 - 2014-10-29 04:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2015-08-24 17:17 - 2014-10-29 04:27 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\wmvdspa.dll
2015-08-24 17:17 - 2014-10-29 04:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mfdvdec.dll
2015-08-24 17:17 - 2014-10-29 04:26 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2015-08-24 17:17 - 2014-10-29 04:25 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-08-24 17:17 - 2014-10-29 04:24 - 00644608 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2015-08-24 17:17 - 2014-10-29 04:24 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\WmpDui.dll
2015-08-24 17:17 - 2014-10-29 04:22 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2015-08-24 17:17 - 2014-10-29 04:21 - 01664000 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2015-08-24 17:17 - 2014-10-29 04:20 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2015-08-24 17:17 - 2014-10-29 04:19 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2015-08-24 17:17 - 2014-10-29 04:18 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\mscandui.dll
2015-08-24 17:17 - 2014-10-29 04:18 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2015-08-24 17:17 - 2014-10-29 04:17 - 03231232 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004b.dll
2015-08-24 17:17 - 2014-10-29 04:17 - 01926144 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0022.dll
2015-08-24 17:17 - 2014-10-29 04:16 - 03235840 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0039.dll
2015-08-24 17:17 - 2014-10-29 04:16 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004a.dll
2015-08-24 17:17 - 2014-10-29 04:16 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\comsnap.dll
2015-08-24 17:17 - 2014-10-29 04:16 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004e.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0049.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0047.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0046.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0020.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0026.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0024.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001b.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0002.dll
2015-08-24 17:17 - 2014-10-29 04:15 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData002a.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004c.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0045.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02075136 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0027.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0c1a.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData081a.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001a.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000f.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0003.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData003e.dll
2015-08-24 17:17 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0021.dll
2015-08-24 17:17 - 2014-10-29 04:12 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2015-08-24 17:17 - 2014-10-29 04:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\sensrsvc.dll
2015-08-24 17:17 - 2014-10-29 04:11 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2015-08-24 17:17 - 2014-10-29 04:10 - 00515072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll
2015-08-24 17:17 - 2014-10-29 04:09 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\lltdsvc.dll
2015-08-24 17:17 - 2014-10-29 04:04 - 00612864 _____ (Microsoft Corporation) C:\Windows\system32\IasMigPlugin.dll
2015-08-24 17:17 - 2014-10-29 04:04 - 00587264 _____ (Microsoft Corporation) C:\Windows\system32\filemgmt.dll
2015-08-24 17:17 - 2014-10-29 04:04 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\devmgr.dll
2015-08-24 17:17 - 2014-10-29 04:04 - 00471040 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-08-24 17:17 - 2014-10-29 04:03 - 00489472 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
2015-08-24 17:17 - 2014-10-29 04:02 - 00520704 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2015-08-24 17:17 - 2014-10-29 04:02 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\xwizards.dll
2015-08-24 17:17 - 2014-10-29 04:02 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-08-24 17:17 - 2014-10-29 04:01 - 00819200 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2015-08-24 17:17 - 2014-10-29 04:01 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2015-08-24 17:17 - 2014-10-29 04:01 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2015-08-24 17:17 - 2014-10-29 04:00 - 00435200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glmf32.dll
2015-08-24 17:17 - 2014-10-29 04:00 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-08-24 17:17 - 2014-10-29 03:59 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-08-24 17:17 - 2014-10-29 03:58 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-08-24 17:17 - 2014-10-29 03:58 - 00423424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2015-08-24 17:17 - 2014-10-29 03:57 - 01431552 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2015-08-24 17:17 - 2014-10-29 03:56 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2015-08-24 17:17 - 2014-10-29 03:55 - 00669184 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2015-08-24 17:17 - 2014-10-29 03:54 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\DfpCommon.dll
2015-08-24 17:17 - 2014-10-29 03:54 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dim.dll
2015-08-24 17:17 - 2014-10-29 03:53 - 02238464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0404.dll
2015-08-24 17:17 - 2014-10-29 03:53 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2015-08-24 17:17 - 2014-10-29 03:52 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\ipsecsnp.dll
2015-08-24 17:17 - 2014-10-29 03:52 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2015-08-24 17:17 - 2014-10-29 03:52 - 00224768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll
2015-08-24 17:17 - 2014-10-29 03:50 - 00521728 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2015-08-24 17:17 - 2014-10-29 03:49 - 00771584 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2015-08-24 17:17 - 2014-10-29 03:49 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2015-08-24 17:17 - 2014-10-29 03:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2015-08-24 17:17 - 2014-10-29 03:49 - 00233984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2015-08-24 17:17 - 2014-10-29 03:49 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmime.dll
2015-08-24 17:17 - 2014-10-29 03:48 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Dxpserver.exe
2015-08-24 17:17 - 2014-10-29 03:47 - 01041920 _____ (Microsoft Corporation) C:\Windows\system32\msdt.exe
2015-08-24 17:17 - 2014-10-29 03:47 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2015-08-24 17:17 - 2014-10-29 03:46 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll
2015-08-24 17:17 - 2014-10-29 03:46 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmvdspa.dll
2015-08-24 17:17 - 2014-10-29 03:46 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfdvdec.dll
2015-08-24 17:17 - 2014-10-29 03:45 - 00429568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdohlp.dll
2015-08-24 17:17 - 2014-10-29 03:45 - 00378880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll
2015-08-24 17:17 - 2014-10-29 03:45 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-08-24 17:17 - 2014-10-29 03:44 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2015-08-24 17:17 - 2014-10-29 03:44 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2015-08-24 17:17 - 2014-10-29 03:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2015-08-24 17:17 - 2014-10-29 03:43 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-08-24 17:17 - 2014-10-29 03:43 - 00736256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
2015-08-24 17:17 - 2014-10-29 03:43 - 00524800 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2015-08-24 17:17 - 2014-10-29 03:43 - 00289792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WmpDui.dll
2015-08-24 17:17 - 2014-10-29 03:43 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2015-08-24 17:17 - 2014-10-29 03:43 - 00228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2015-08-24 17:17 - 2014-10-29 03:43 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offfilt.dll
2015-08-24 17:17 - 2014-10-29 03:42 - 00712192 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2015-08-24 17:17 - 2014-10-29 03:41 - 00381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassdo.dll
2015-08-24 17:17 - 2014-10-29 03:40 - 02036224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0007.dll
2015-08-24 17:17 - 2014-10-29 03:39 - 09604608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000a.dll
2015-08-24 17:17 - 2014-10-29 03:39 - 04531712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0416.dll
2015-08-24 17:17 - 2014-10-29 03:39 - 04530688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001d.dll
2015-08-24 17:17 - 2014-10-29 03:39 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2015-08-24 17:17 - 2014-10-29 03:39 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscandui.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 04530688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0010.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 04530176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0414.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 04529664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0816.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 02387456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000d.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 02307072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000c.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMPOSE.dll
2015-08-24 17:17 - 2014-10-29 03:38 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2015-08-24 17:17 - 2014-10-29 03:36 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-08-24 17:17 - 2014-10-29 03:34 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll
2015-08-24 17:17 - 2014-10-29 03:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2015-08-24 17:17 - 2014-10-29 03:33 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll
2015-08-24 17:17 - 2014-10-29 03:33 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll
2015-08-24 17:17 - 2014-10-29 03:32 - 00794624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll
2015-08-24 17:17 - 2014-10-29 03:31 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2015-08-24 17:17 - 2014-10-29 03:29 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\filemgmt.dll
2015-08-24 17:17 - 2014-10-29 03:29 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devmgr.dll
2015-08-24 17:17 - 2014-10-29 03:29 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
2015-08-24 17:17 - 2014-10-29 03:29 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2015-08-24 17:17 - 2014-10-29 03:29 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-08-24 17:17 - 2014-10-29 03:28 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2015-08-24 17:17 - 2014-10-29 03:28 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-08-24 17:17 - 2014-10-29 03:27 - 00763392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2015-08-24 17:17 - 2014-10-29 03:27 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\PCPTpm12.dll
2015-08-24 17:17 - 2014-10-29 03:27 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwizards.dll
2015-08-24 17:17 - 2014-10-29 03:27 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2015-08-24 17:17 - 2014-10-29 03:27 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-08-24 17:17 - 2014-10-29 03:26 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOMEX.dll
2015-08-24 17:17 - 2014-10-29 03:26 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-08-24 17:17 - 2014-10-29 03:25 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2015-08-24 17:17 - 2014-10-29 03:25 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncInfrastructure.dll
2015-08-24 17:17 - 2014-10-29 03:25 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certreq.exe
2015-08-24 17:17 - 2014-10-29 03:25 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-08-24 17:17 - 2014-10-29 03:24 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll
2015-08-24 17:17 - 2014-10-29 03:24 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2015-08-24 17:17 - 2014-10-29 03:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2015-08-24 17:17 - 2014-10-29 03:24 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Geolocation.dll
2015-08-24 17:17 - 2014-10-29 03:23 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-08-24 17:17 - 2014-10-29 03:23 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll
2015-08-24 17:17 - 2014-10-29 03:23 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll
2015-08-24 17:17 - 2014-10-29 03:23 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2015-08-24 17:17 - 2014-10-29 03:22 - 00839680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-08-24 17:17 - 2014-10-29 03:22 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-08-24 17:17 - 2014-10-29 03:22 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\msdelta.dll
2015-08-24 17:17 - 2014-10-29 03:22 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2015-08-24 17:17 - 2014-10-29 03:21 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-08-24 17:17 - 2014-10-29 03:21 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-08-24 17:17 - 2014-10-29 03:21 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-08-24 17:17 - 2014-10-29 03:21 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-08-24 17:17 - 2014-10-29 03:21 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2015-08-24 17:17 - 2014-10-29 03:21 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2015-08-24 17:17 - 2014-10-29 03:20 - 00770048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsecsnp.dll
2015-08-24 17:17 - 2014-10-29 03:20 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2015-08-24 17:17 - 2014-10-29 03:20 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2015-08-24 17:17 - 2014-10-29 03:20 - 00310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2015-08-24 17:17 - 2014-10-29 03:20 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2015-08-24 17:17 - 2014-10-29 03:20 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerServer.dll
2015-08-24 17:17 - 2014-10-29 03:19 - 00621568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsFilt.dll
2015-08-24 17:17 - 2014-10-29 03:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-08-24 17:17 - 2014-10-29 03:19 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-08-24 17:17 - 2014-10-29 03:18 - 00743936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
2015-08-24 17:17 - 2014-10-29 03:17 - 00981504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdt.exe
2015-08-24 17:17 - 2014-10-29 03:17 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2015-08-24 17:17 - 2014-10-29 03:17 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2015-08-24 17:17 - 2014-10-29 03:17 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-08-24 17:17 - 2014-10-29 03:17 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2015-08-24 17:17 - 2014-10-29 03:16 - 00795136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll
2015-08-24 17:17 - 2014-10-29 03:16 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\authfwcfg.dll
2015-08-24 17:17 - 2014-10-29 03:16 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-08-24 17:17 - 2014-10-29 03:14 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-08-24 17:17 - 2014-10-29 03:14 - 00493568 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-08-24 17:17 - 2014-10-29 03:14 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-08-24 17:17 - 2014-10-29 03:13 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-08-24 17:17 - 2014-10-29 03:12 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2015-08-24 17:17 - 2014-10-29 03:12 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2015-08-24 17:17 - 2014-10-29 03:10 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2015-08-24 17:17 - 2014-10-29 03:10 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2015-08-24 17:17 - 2014-10-29 03:09 - 00508416 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2015-08-24 17:17 - 2014-10-29 03:09 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-08-24 17:17 - 2014-10-29 03:08 - 00412672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WLanConn.dll
2015-08-24 17:17 - 2014-10-29 03:07 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll
2015-08-24 17:17 - 2014-10-29 03:06 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2015-08-24 17:17 - 2014-10-29 03:05 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2015-08-24 17:17 - 2014-10-29 03:05 - 00292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2015-08-24 17:17 - 2014-10-29 03:05 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-08-24 17:17 - 2014-10-29 03:04 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2015-08-24 17:17 - 2014-10-29 03:04 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll
2015-08-24 17:17 - 2014-10-29 03:04 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2015-08-24 17:17 - 2014-10-29 03:03 - 00608256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2015-08-24 17:17 - 2014-10-29 03:03 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-08-24 17:17 - 2014-10-29 03:03 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2015-08-24 17:17 - 2014-10-29 03:01 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdelta.dll
2015-08-24 17:17 - 2014-10-29 03:01 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2015-08-24 17:17 - 2014-10-29 03:00 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-08-24 17:17 - 2014-10-29 03:00 - 00252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll

FRST.txt Teil 4:

Code:

2015-08-24 17:17 - 2014-10-29 02:59 - 00302080 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2015-08-24 17:17 - 2014-10-29 02:59 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll
2015-08-24 17:17 - 2014-10-29 02:58 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2015-08-24 17:17 - 2014-10-29 02:58 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2015-08-24 17:17 - 2014-10-29 02:58 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-08-24 17:17 - 2014-10-29 02:58 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-08-24 17:17 - 2014-10-29 02:57 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2015-08-24 17:17 - 2014-10-29 02:57 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Proximity.dll
2015-08-24 17:17 - 2014-10-29 02:56 - 00483328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2015-08-24 17:17 - 2014-10-29 02:56 - 00482304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2015-08-24 17:17 - 2014-10-29 02:56 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll
2015-08-24 17:17 - 2014-10-29 02:55 - 00887808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dim700.dll
2015-08-24 17:17 - 2014-10-29 02:55 - 00795648 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2015-08-24 17:17 - 2014-10-29 02:55 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2015-08-24 17:17 - 2014-10-29 02:55 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll
2015-08-24 17:17 - 2014-10-29 02:54 - 00560640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-08-24 17:17 - 2014-10-29 02:54 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2015-08-24 17:17 - 2014-10-29 02:54 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.HardwareId.dll
2015-08-24 17:17 - 2014-10-29 02:53 - 01156608 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-08-24 17:17 - 2014-10-29 02:53 - 00550400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll
2015-08-24 17:17 - 2014-10-29 02:53 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2015-08-24 17:17 - 2014-10-29 02:52 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll
2015-08-24 17:17 - 2014-10-29 02:52 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-08-24 17:17 - 2014-10-29 02:52 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-08-24 17:17 - 2014-10-29 02:52 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-08-24 17:17 - 2014-10-29 02:51 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2015-08-24 17:17 - 2014-10-29 02:50 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2015-08-24 17:17 - 2014-10-29 02:50 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2015-08-24 17:17 - 2014-10-29 02:50 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2015-08-24 17:17 - 2014-10-29 02:49 - 00576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll
2015-08-24 17:17 - 2014-10-29 02:49 - 00559104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2015-08-24 17:17 - 2014-10-29 02:49 - 00304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-08-24 17:17 - 2014-10-29 02:49 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-08-24 17:17 - 2014-10-29 02:47 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2015-08-24 17:17 - 2014-10-29 02:44 - 00561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-08-24 17:17 - 2014-10-29 02:44 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2015-08-24 17:17 - 2014-10-29 02:43 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2015-08-24 17:17 - 2014-10-29 02:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll
2015-08-24 17:17 - 2014-10-29 02:43 - 00181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.HardwareId.dll
2015-08-24 17:17 - 2014-10-29 02:42 - 00865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll
2015-08-24 17:17 - 2014-10-29 02:41 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-08-24 17:17 - 2014-10-29 02:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-08-24 17:17 - 2014-10-29 02:40 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2015-08-24 17:17 - 2014-10-29 02:35 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2015-08-24 17:17 - 2014-10-15 10:32 - 00551232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2015-08-24 17:17 - 2014-10-15 10:32 - 00337728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2015-08-24 17:17 - 2014-08-26 05:30 - 00354112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2015-08-24 17:16 - 2014-10-29 06:09 - 00233448 _____ (Microsoft Corporation) C:\Windows\system32\ProximityUxHost.exe
2015-08-24 17:16 - 2014-10-29 06:09 - 00214360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2015-08-24 17:16 - 2014-10-29 06:09 - 00155456 _____ (Microsoft Corporation) C:\Windows\system32\devobj.dll
2015-08-24 17:16 - 2014-10-29 06:09 - 00145144 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2015-08-24 17:16 - 2014-10-29 06:09 - 00017560 _____ (Microsoft Corporation) C:\Windows\system32\psapi.dll
2015-08-24 17:16 - 2014-10-29 06:04 - 00196264 _____ (Microsoft Corporation) C:\Windows\system32\ntmarta.dll
2015-08-24 17:16 - 2014-10-29 06:04 - 00181816 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe
2015-08-24 17:16 - 2014-10-29 06:04 - 00136912 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-08-24 17:16 - 2014-10-29 06:04 - 00120384 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-08-24 17:16 - 2014-10-29 06:00 - 00297512 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2015-08-24 17:16 - 2014-10-29 06:00 - 00142000 _____ (Microsoft Corporation) C:\Windows\system32\dxva2.dll
2015-08-24 17:16 - 2014-10-29 05:57 - 00767504 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2015-08-24 17:16 - 2014-10-29 05:57 - 00447256 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2015-08-24 17:16 - 2014-10-29 05:57 - 00216920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-08-24 17:16 - 2014-10-29 05:57 - 00034568 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountBroker.exe
2015-08-24 17:16 - 2014-10-29 05:57 - 00029408 _____ (Microsoft Corporation) C:\Windows\system32\PickerHost.exe
2015-08-24 17:16 - 2014-10-29 05:57 - 00022208 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.exe
2015-08-24 17:16 - 2014-10-29 05:57 - 00018584 _____ (Microsoft Corporation) C:\Windows\system32\SlideToShutDown.exe
2015-08-24 17:16 - 2014-10-29 05:55 - 00278392 _____ (Microsoft Corporation) C:\Windows\system32\wkspbroker.exe
2015-08-24 17:16 - 2014-10-29 05:52 - 00244272 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-08-24 17:16 - 2014-10-29 05:52 - 00161120 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-08-24 17:16 - 2014-10-29 05:52 - 00132232 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll
2015-08-24 17:16 - 2014-10-29 05:51 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-08-24 17:16 - 2014-10-29 05:51 - 00179736 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-08-24 17:16 - 2014-10-29 05:51 - 00159112 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2015-08-24 17:16 - 2014-10-29 05:18 - 00348048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verifier.dll
2015-08-24 17:16 - 2014-10-29 05:18 - 00241168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2015-08-24 17:16 - 2014-10-29 05:18 - 00164264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2015-08-24 17:16 - 2014-10-29 05:15 - 00154392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntmarta.dll
2015-08-24 17:16 - 2014-10-29 05:15 - 00119800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-08-24 17:16 - 2014-10-29 05:12 - 00241680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2015-08-24 17:16 - 2014-10-29 05:12 - 00116696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxva2.dll
2015-08-24 17:16 - 2014-10-29 05:11 - 00190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2015-08-24 17:16 - 2014-10-29 05:11 - 00187488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2015-08-24 17:16 - 2014-10-29 05:11 - 00184888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
2015-08-24 17:16 - 2014-10-29 05:11 - 00183832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
2015-08-24 17:16 - 2014-10-29 05:10 - 01906872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplaySwitch.exe
2015-08-24 17:16 - 2014-10-29 05:10 - 00272648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp.dll
2015-08-24 17:16 - 2014-10-29 05:07 - 00136840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-08-24 17:16 - 2014-10-29 05:07 - 00134280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-08-24 17:16 - 2014-10-29 04:45 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll
2015-08-24 17:16 - 2014-10-29 04:42 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-08-24 17:16 - 2014-10-29 04:42 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\uudf.dll
2015-08-24 17:16 - 2014-10-29 04:41 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2015-08-24 17:16 - 2014-10-29 04:41 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2015-08-24 17:16 - 2014-10-29 04:40 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll
2015-08-24 17:16 - 2014-10-29 04:35 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll
2015-08-24 17:16 - 2014-10-29 04:35 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7.dll
2015-08-24 17:16 - 2014-10-29 04:33 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll
2015-08-24 17:16 - 2014-10-29 04:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\migflt.dll
2015-08-24 17:16 - 2014-10-29 04:31 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-08-24 17:16 - 2014-10-29 04:31 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\WinSyncMetastore.dll
2015-08-24 17:16 - 2014-10-29 04:29 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2015-08-24 17:16 - 2014-10-29 04:28 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-08-24 17:16 - 2014-10-29 04:28 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2015-08-24 17:16 - 2014-10-29 04:27 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll
2015-08-24 17:16 - 2014-10-29 04:27 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll
2015-08-24 17:16 - 2014-10-29 04:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2015-08-24 17:16 - 2014-10-29 04:27 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\mssha.dll
2015-08-24 17:16 - 2014-10-29 04:26 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-08-24 17:16 - 2014-10-29 04:26 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\gpresult.exe
2015-08-24 17:16 - 2014-10-29 04:22 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\recimg.exe
2015-08-24 17:16 - 2014-10-29 04:22 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2015-08-24 17:16 - 2014-10-29 04:21 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll
2015-08-24 17:16 - 2014-10-29 04:20 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-08-24 17:16 - 2014-10-29 04:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2015-08-24 17:16 - 2014-10-29 04:18 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0000.dll
2015-08-24 17:16 - 2014-10-29 04:18 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2015-08-24 17:16 - 2014-10-29 04:17 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2015-08-24 17:16 - 2014-10-29 04:14 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2015-08-24 17:16 - 2014-10-29 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2015-08-24 17:16 - 2014-10-29 04:13 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2015-08-24 17:16 - 2014-10-29 04:13 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2015-08-24 17:16 - 2014-10-29 04:12 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2015-08-24 17:16 - 2014-10-29 04:12 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2015-08-24 17:16 - 2014-10-29 04:12 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\fhcat.dll
2015-08-24 17:16 - 2014-10-29 04:11 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\SnippingTool.exe
2015-08-24 17:16 - 2014-10-29 04:09 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2015-08-24 17:16 - 2014-10-29 04:09 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2015-08-24 17:16 - 2014-10-29 04:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\fdprint.dll
2015-08-24 17:16 - 2014-10-29 04:06 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2015-08-24 17:16 - 2014-10-29 04:05 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2015-08-24 17:16 - 2014-10-29 04:04 - 00445440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp60.dll
2015-08-24 17:16 - 2014-10-29 04:04 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2015-08-24 17:16 - 2014-10-29 04:04 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll
2015-08-24 17:16 - 2014-10-29 04:03 - 00849408 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2015-08-24 17:16 - 2014-10-29 04:03 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\xwtpdui.dll
2015-08-24 17:16 - 2014-10-29 04:02 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\rasmontr.dll
2015-08-24 17:16 - 2014-10-29 04:02 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2015-08-24 17:16 - 2014-10-29 04:02 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2015-08-24 17:16 - 2014-10-29 04:01 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2015-08-24 17:16 - 2014-10-29 04:00 - 03814400 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2015-08-24 17:16 - 2014-10-29 04:00 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2015-08-24 17:16 - 2014-10-29 04:00 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2015-08-24 17:16 - 2014-10-29 04:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll
2015-08-24 17:16 - 2014-10-29 03:59 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\certreq.exe
2015-08-24 17:16 - 2014-10-29 03:58 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe
2015-08-24 17:16 - 2014-10-29 03:58 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2015-08-24 17:16 - 2014-10-29 03:58 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\msrdc.dll
2015-08-24 17:16 - 2014-10-29 03:58 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uudf.dll
2015-08-24 17:16 - 2014-10-29 03:57 - 01047040 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2015-08-24 17:16 - 2014-10-29 03:57 - 00515072 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2015-08-24 17:16 - 2014-10-29 03:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2015-08-24 17:16 - 2014-10-29 03:57 - 00248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2015-08-24 17:16 - 2014-10-29 03:57 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2015-08-24 17:16 - 2014-10-29 03:57 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2015-08-24 17:16 - 2014-10-29 03:56 - 00796160 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2015-08-24 17:16 - 2014-10-29 03:56 - 00317440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2015-08-24 17:16 - 2014-10-29 03:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2015-08-24 17:16 - 2014-10-29 03:55 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput8.dll
2015-08-24 17:16 - 2014-10-29 03:54 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll
2015-08-24 17:16 - 2014-10-29 03:53 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2015-08-24 17:16 - 2014-10-29 03:52 - 03355136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0804.dll
2015-08-24 17:16 - 2014-10-29 03:52 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2015-08-24 17:16 - 2014-10-29 03:52 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2015-08-24 17:16 - 2014-10-29 03:51 - 00782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data001E.dll
2015-08-24 17:16 - 2014-10-29 03:51 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2015-08-24 17:16 - 2014-10-29 03:51 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\IdListen.dll
2015-08-24 17:16 - 2014-10-29 03:51 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll
2015-08-24 17:16 - 2014-10-29 03:51 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmstyle.dll
2015-08-24 17:16 - 2014-10-29 03:50 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlceoledb40.dll
2015-08-24 17:16 - 2014-10-29 03:49 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2015-08-24 17:16 - 2014-10-29 03:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-08-24 17:16 - 2014-10-29 03:49 - 00234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-08-24 17:16 - 2014-10-29 03:49 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSyncMetastore.dll
2015-08-24 17:16 - 2014-10-29 03:48 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\connect.dll
2015-08-24 17:16 - 2014-10-29 03:48 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll
2015-08-24 17:16 - 2014-10-29 03:48 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2015-08-24 17:16 - 2014-10-29 03:47 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2015-08-24 17:16 - 2014-10-29 03:47 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe
2015-08-24 17:16 - 2014-10-29 03:46 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-08-24 17:16 - 2014-10-29 03:46 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\RADCUI.dll
2015-08-24 17:16 - 2014-10-29 03:46 - 00292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsnt.dll
2015-08-24 17:16 - 2014-10-29 03:46 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe
2015-08-24 17:16 - 2014-10-29 03:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\msoeacct.dll
2015-08-24 17:16 - 2014-10-29 03:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-08-24 17:16 - 2014-10-29 03:46 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdskmgr.dll
2015-08-24 17:16 - 2014-10-29 03:46 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2015-08-24 17:16 - 2014-10-29 03:46 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-08-24 17:16 - 2014-10-29 03:45 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll
2015-08-24 17:16 - 2014-10-29 03:45 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2015-08-24 17:16 - 2014-10-29 03:45 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2015-08-24 17:16 - 2014-10-29 03:45 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpresult.exe
2015-08-24 17:16 - 2014-10-29 03:42 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi32.dll
2015-08-24 17:16 - 2014-10-29 03:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll
2015-08-24 17:16 - 2014-10-29 03:41 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\apds.dll
2015-08-24 17:16 - 2014-10-29 03:41 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassam.dll
2015-08-24 17:16 - 2014-10-29 03:40 - 00380928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll
2015-08-24 17:16 - 2014-10-29 03:40 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe
2015-08-24 17:16 - 2014-10-29 03:40 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2015-08-24 17:16 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0026.dll
2015-08-24 17:16 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000f.dll
2015-08-24 17:16 - 2014-10-29 03:38 - 01548800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0000.dll
2015-08-24 17:16 - 2014-10-29 03:38 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollUI.dll
2015-08-24 17:16 - 2014-10-29 03:38 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2015-08-24 17:16 - 2014-10-29 03:37 - 03149824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0039.dll
2015-08-24 17:16 - 2014-10-29 03:37 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData002a.dll
2015-08-24 17:16 - 2014-10-29 03:37 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsnap.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004e.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004c.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004b.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004a.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0049.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0047.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0046.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0045.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0020.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01999360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0027.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0c1a.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData081a.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0024.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001b.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001a.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0018.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0003.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0002.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData003e.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0022.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0021.dll
2015-08-24 17:16 - 2014-10-29 03:36 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\sbeio.dll
2015-08-24 17:16 - 2014-10-29 03:35 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2015-08-24 17:16 - 2014-10-29 03:35 - 00253440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll
2015-08-24 17:16 - 2014-10-29 03:34 - 00414720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdlgs.dll
2015-08-24 17:16 - 2014-10-29 03:34 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2015-08-24 17:16 - 2014-10-29 03:34 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2015-08-24 17:16 - 2014-10-29 03:32 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psr.exe
2015-08-24 17:16 - 2014-10-29 03:31 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdprint.dll
2015-08-24 17:16 - 2014-10-29 03:30 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdial32.dll
2015-08-24 17:16 - 2014-10-29 03:29 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IasMigPlugin.dll
2015-08-24 17:16 - 2014-10-29 03:29 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll
2015-08-24 17:16 - 2014-10-29 03:29 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwtpdui.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\ulib.dll
2015-08-24 17:16 - 2014-10-29 03:28 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll
2015-08-24 17:16 - 2014-10-29 03:27 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-08-24 17:16 - 2014-10-29 03:27 - 00248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmontr.dll
2015-08-24 17:16 - 2014-10-29 03:26 - 03788288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2015-08-24 17:16 - 2014-10-29 03:26 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2015-08-24 17:16 - 2014-10-29 03:26 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\provthrd.dll
2015-08-24 17:16 - 2014-10-29 03:26 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2015-08-24 17:16 - 2014-10-29 03:26 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\ufat.dll
2015-08-24 17:16 - 2014-10-29 03:25 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2015-08-24 17:16 - 2014-10-29 03:25 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\mibincodec.dll
2015-08-24 17:16 - 2014-10-29 03:25 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-08-24 17:16 - 2014-10-29 03:24 - 00779776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe
2015-08-24 17:16 - 2014-10-29 03:24 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2015-08-24 17:16 - 2014-10-29 03:24 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2015-08-24 17:16 - 2014-10-29 03:22 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-08-24 17:16 - 2014-10-29 03:22 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\sstpsvc.dll
2015-08-24 17:16 - 2014-10-29 03:21 - 00250368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2015-08-24 17:16 - 2014-10-29 03:21 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-08-24 17:16 - 2014-10-29 03:21 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidx.dll
2015-08-24 17:16 - 2014-10-29 03:20 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-08-24 17:16 - 2014-10-29 03:20 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2015-08-24 17:16 - 2014-10-29 03:20 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2015-08-24 17:16 - 2014-10-29 03:20 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll
2015-08-24 17:16 - 2014-10-29 03:19 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2015-08-24 17:16 - 2014-10-29 03:19 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\wmitomi.dll
2015-08-24 17:16 - 2014-10-29 03:19 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2015-08-24 17:16 - 2014-10-29 03:18 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2015-08-24 17:16 - 2014-10-29 03:18 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2015-08-24 17:16 - 2014-10-29 03:18 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll
2015-08-24 17:16 - 2014-10-29 03:18 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\IDStore.dll
2015-08-24 17:16 - 2014-10-29 03:17 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\wevtutil.exe
2015-08-24 17:16 - 2014-10-29 03:17 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2015-08-24 17:16 - 2014-10-29 03:16 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll
2015-08-24 17:16 - 2014-10-29 03:16 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2015-08-24 17:16 - 2014-10-29 03:16 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msoeacct.dll
2015-08-24 17:16 - 2014-10-29 03:14 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2015-08-24 17:16 - 2014-10-29 03:13 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2015-08-24 17:16 - 2014-10-29 03:12 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2015-08-24 17:16 - 2014-10-29 03:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollUI.dll
2015-08-24 17:16 - 2014-10-29 03:12 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll
2015-08-24 17:16 - 2014-10-29 03:12 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2015-08-24 17:16 - 2014-10-29 03:11 - 00672768 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-08-24 17:16 - 2014-10-29 03:11 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\msdtckrm.dll
2015-08-24 17:16 - 2014-10-29 03:10 - 00302080 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-08-24 17:16 - 2014-10-29 03:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_8.dll
2015-08-24 17:16 - 2014-10-29 03:10 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2015-08-24 17:16 - 2014-10-29 03:10 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbeio.dll
2015-08-24 17:16 - 2014-10-29 03:08 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\wecsvc.dll
2015-08-24 17:16 - 2014-10-29 03:06 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2015-08-24 17:16 - 2014-10-29 03:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe


Wandalensalz 28.08.2015 15:17

FRST.txt Teil 4:

Code:

15392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2015-08-24 17:16 - 2014-10-29 03:05 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\TtlsCfg.dll
2015-08-24 17:16 - 2014-10-29 03:05 - 00193024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-08-24 17:16 - 2014-10-29 03:05 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ulib.dll
2015-08-24 17:16 - 2014-10-29 03:05 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-08-24 17:16 - 2014-10-29 03:04 - 00364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPTpm12.dll
2015-08-24 17:16 - 2014-10-29 03:04 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
2015-08-24 17:16 - 2014-10-29 03:04 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2015-08-24 17:16 - 2014-10-29 03:04 - 00201216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2015-08-24 17:16 - 2014-10-29 03:03 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2015-08-24 17:16 - 2014-10-29 03:02 - 00267776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2015-08-24 17:16 - 2014-10-29 03:02 - 00217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Geolocation.dll
2015-08-24 17:16 - 2014-10-29 03:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mibincodec.dll
2015-08-24 17:16 - 2014-10-29 03:01 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll
2015-08-24 17:16 - 2014-10-29 03:00 - 01207296 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-08-24 17:16 - 2014-10-29 03:00 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-08-24 17:16 - 2014-10-29 03:00 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-08-24 17:16 - 2014-10-29 03:00 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2015-08-24 17:16 - 2014-10-29 03:00 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2015-08-24 17:16 - 2014-10-29 03:00 - 00200192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DscCoreConfProv.dll
2015-08-24 17:16 - 2014-10-29 03:00 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2015-08-24 17:16 - 2014-10-29 02:59 - 00316928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-08-24 17:16 - 2014-10-29 02:59 - 00286720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2015-08-24 17:16 - 2014-10-29 02:59 - 00188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll
2015-08-24 17:16 - 2014-10-29 02:59 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2015-08-24 17:16 - 2014-10-29 02:58 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2015-08-24 17:16 - 2014-10-29 02:58 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IDStore.dll
2015-08-24 17:16 - 2014-10-29 02:57 - 00364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authfwcfg.dll
2015-08-24 17:16 - 2014-10-29 02:57 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll
2015-08-24 17:16 - 2014-10-29 02:57 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qwave.dll
2015-08-24 17:16 - 2014-10-29 02:57 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2015-08-24 17:16 - 2014-10-29 02:57 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtutil.exe
2015-08-24 17:16 - 2014-10-29 02:57 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2015-08-24 17:16 - 2014-10-29 02:56 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2015-08-24 17:16 - 2014-10-29 02:56 - 00272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-08-24 17:16 - 2014-10-29 02:56 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2015-08-24 17:16 - 2014-10-29 02:55 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll
2015-08-24 17:16 - 2014-10-29 02:55 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2015-08-24 17:16 - 2014-10-29 02:55 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2015-08-24 17:16 - 2014-10-29 02:55 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2015-08-24 17:16 - 2014-10-29 02:55 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2015-08-24 17:16 - 2014-10-29 02:54 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-08-24 17:16 - 2014-10-29 02:54 - 00347648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2015-08-24 17:16 - 2014-10-29 02:54 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NAPMONTR.DLL
2015-08-24 17:16 - 2014-10-29 02:54 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2015-08-24 17:16 - 2014-10-29 02:54 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceTypes.dll
2015-08-24 17:16 - 2014-10-29 02:54 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2015-08-24 17:16 - 2014-10-29 02:54 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00425472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00347648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_8.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-08-24 17:16 - 2014-10-29 02:53 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2015-08-24 17:16 - 2014-10-29 02:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2015-08-24 17:16 - 2014-10-29 02:52 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2015-08-24 17:16 - 2014-10-29 02:52 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.SpeechSynthesis.dll
2015-08-24 17:16 - 2014-10-29 02:51 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2015-08-24 17:16 - 2014-10-29 02:51 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-08-24 17:16 - 2014-10-29 02:51 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsCfg.dll
2015-08-24 17:16 - 2014-10-29 02:51 - 00169472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2015-08-24 17:16 - 2014-10-29 02:49 - 00831488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certca.dll
2015-08-24 17:16 - 2014-10-29 02:49 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2015-08-24 17:16 - 2014-10-29 02:48 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\InputSwitch.dll
2015-08-24 17:16 - 2014-10-29 02:47 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\SettingMonitor.dll
2015-08-24 17:16 - 2014-10-29 02:47 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-08-24 17:16 - 2014-10-29 02:46 - 01305088 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll
2015-08-24 17:16 - 2014-10-29 02:46 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2015-08-24 17:16 - 2014-10-29 02:45 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll
2015-08-24 17:16 - 2014-10-29 02:45 - 00196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll
2015-08-24 17:16 - 2014-10-29 02:45 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2015-08-24 17:16 - 2014-10-29 02:44 - 00732672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll
2015-08-24 17:16 - 2014-10-29 02:44 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll
2015-08-24 17:16 - 2014-10-29 02:44 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2015-08-24 17:16 - 2014-10-29 02:44 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2015-08-24 17:16 - 2014-10-29 02:44 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2015-08-24 17:16 - 2014-10-29 02:43 - 00957952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlanMM.dll
2015-08-24 17:16 - 2014-10-29 02:43 - 00724480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2015-08-24 17:16 - 2014-10-29 02:43 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPMONTR.DLL
2015-08-24 17:16 - 2014-10-29 02:43 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2015-08-24 17:16 - 2014-10-29 02:43 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceTypes.dll
2015-08-24 17:16 - 2014-10-29 02:43 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2015-08-24 17:16 - 2014-10-29 02:43 - 00148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2015-08-24 17:16 - 2014-10-29 02:42 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.SpeechSynthesis.dll
2015-08-24 17:16 - 2014-10-29 02:41 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2015-08-24 17:16 - 2014-10-29 02:39 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputSwitch.dll
2015-08-24 17:16 - 2014-10-29 02:38 - 01232896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll
2015-08-24 17:16 - 2014-10-29 02:38 - 00565760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-08-24 17:16 - 2014-10-29 02:37 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe
2015-08-24 17:16 - 2014-10-29 02:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-08-24 17:16 - 2014-10-29 02:30 - 00215552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2015-08-24 17:16 - 2014-09-25 05:42 - 00373568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-08-24 17:15 - 2014-10-29 06:10 - 00177688 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2015-08-24 17:15 - 2014-10-29 06:10 - 00089344 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-08-24 17:15 - 2014-10-29 06:09 - 00371304 _____ (Microsoft Corporation) C:\Windows\system32\verifier.dll
2015-08-24 17:15 - 2014-10-29 06:04 - 00224600 _____ (Microsoft Corporation) C:\Windows\system32\ntasn1.dll
2015-08-24 17:15 - 2014-10-29 06:04 - 00153336 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2015-08-24 17:15 - 2014-10-29 06:04 - 00135304 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2015-08-24 17:15 - 2014-10-29 06:04 - 00105872 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2015-08-24 17:15 - 2014-10-29 06:04 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2015-08-24 17:15 - 2014-10-29 06:00 - 00210744 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2015-08-24 17:15 - 2014-10-29 06:00 - 00125504 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-08-24 17:15 - 2014-10-29 05:59 - 00105944 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll
2015-08-24 17:15 - 2014-10-29 05:57 - 00299048 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2015-08-24 17:15 - 2014-10-29 05:57 - 00250488 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2015-08-24 17:15 - 2014-10-29 05:57 - 00248408 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2015-08-24 17:15 - 2014-10-29 05:57 - 00246832 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2015-08-24 17:15 - 2014-10-29 05:57 - 00203504 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2015-08-24 17:15 - 2014-10-29 05:57 - 00089816 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2015-08-24 17:15 - 2014-10-29 05:52 - 00126056 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-08-24 17:15 - 2014-10-29 05:18 - 00148728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2015-08-24 17:15 - 2014-10-29 05:18 - 00127552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2015-08-24 17:15 - 2014-10-29 05:18 - 00120352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll
2015-08-24 17:15 - 2014-10-29 05:15 - 00165728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntasn1.dll
2015-08-24 17:15 - 2014-10-29 05:15 - 00115672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2015-08-24 17:15 - 2014-10-29 05:15 - 00098152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2015-08-24 17:15 - 2014-10-29 05:15 - 00089856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2015-08-24 17:15 - 2014-10-29 05:12 - 00102728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-08-24 17:15 - 2014-10-29 05:12 - 00087224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpr.dll
2015-08-24 17:15 - 2014-10-29 05:11 - 00275280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
2015-08-24 17:15 - 2014-10-29 05:11 - 00274256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
2015-08-24 17:15 - 2014-10-29 05:11 - 00229248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
2015-08-24 17:15 - 2014-10-29 05:11 - 00099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2015-08-24 17:15 - 2014-10-29 05:09 - 00017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
2015-08-24 17:15 - 2014-10-29 05:07 - 00089816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.dll
2015-08-24 17:15 - 2014-10-29 05:07 - 00081008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2015-08-24 17:15 - 2014-10-29 05:06 - 00111064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTWorkQ.dll
2015-08-24 17:15 - 2014-10-29 05:05 - 00120864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2015-08-24 17:15 - 2014-10-29 04:48 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll
2015-08-24 17:15 - 2014-10-29 04:46 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-08-24 17:15 - 2014-10-29 04:46 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-08-24 17:15 - 2014-10-29 04:44 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\SPInf.dll
2015-08-24 17:15 - 2014-10-29 04:42 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\dbnetlib.dll
2015-08-24 17:15 - 2014-10-29 04:41 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\drt.dll
2015-08-24 17:15 - 2014-10-29 04:41 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2015-08-24 17:15 - 2014-10-29 04:41 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\adsldpc.dll
2015-08-24 17:15 - 2014-10-29 04:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\wevtfwd.dll
2015-08-24 17:15 - 2014-10-29 04:37 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\dinput.dll
2015-08-24 17:15 - 2014-10-29 04:37 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\msctfui.dll
2015-08-24 17:15 - 2014-10-29 04:36 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2015-08-24 17:15 - 2014-10-29 04:36 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2015-08-24 17:15 - 2014-10-29 04:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2015-08-24 17:15 - 2014-10-29 04:34 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll
2015-08-24 17:15 - 2014-10-29 04:34 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2015-08-24 17:15 - 2014-10-29 04:34 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\rgb9rast.dll
2015-08-24 17:15 - 2014-10-29 04:34 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\fms.dll
2015-08-24 17:15 - 2014-10-29 04:33 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-08-24 17:15 - 2014-10-29 04:33 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\atl.dll
2015-08-24 17:15 - 2014-10-29 04:33 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2015-08-24 17:15 - 2014-10-29 04:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll
2015-08-24 17:15 - 2014-10-29 04:32 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\sqlcecompact40.dll
2015-08-24 17:15 - 2014-10-29 04:32 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2015-08-24 17:15 - 2014-10-29 04:31 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2015-08-24 17:15 - 2014-10-29 04:31 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2015-08-24 17:15 - 2014-10-29 04:30 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll
2015-08-24 17:15 - 2014-10-29 04:29 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
2015-08-24 17:15 - 2014-10-29 04:29 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll
2015-08-24 17:15 - 2014-10-29 04:29 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\dmusic.dll
2015-08-24 17:15 - 2014-10-29 04:27 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\NAPSTAT.EXE
2015-08-24 17:15 - 2014-10-29 04:27 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\mycomput.dll
2015-08-24 17:15 - 2014-10-29 04:27 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\sdiageng.dll
2015-08-24 17:15 - 2014-10-29 04:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\tpmvscmgr.exe
2015-08-24 17:15 - 2014-10-29 04:27 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2015-08-24 17:15 - 2014-10-29 04:27 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2015-08-24 17:15 - 2014-10-29 04:26 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2015-08-24 17:15 - 2014-10-29 04:26 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2015-08-24 17:15 - 2014-10-29 04:25 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2015-08-24 17:15 - 2014-10-29 04:24 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2015-08-24 17:15 - 2014-10-29 04:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\bdaplgin.ax
2015-08-24 17:15 - 2014-10-29 04:23 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpui.dll
2015-08-24 17:15 - 2014-10-29 04:23 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-08-24 17:15 - 2014-10-29 04:23 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2015-08-24 17:15 - 2014-10-29 04:23 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll
2015-08-24 17:15 - 2014-10-29 04:22 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll
2015-08-24 17:15 - 2014-10-29 04:22 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2015-08-24 17:15 - 2014-10-29 04:20 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2015-08-24 17:15 - 2014-10-29 04:20 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2015-08-24 17:15 - 2014-10-29 04:19 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe
2015-08-24 17:15 - 2014-10-29 04:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\auditcse.dll
2015-08-24 17:15 - 2014-10-29 04:19 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\softkbd.dll
2015-08-24 17:15 - 2014-10-29 04:18 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2015-08-24 17:15 - 2014-10-29 04:18 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2015-08-24 17:15 - 2014-10-29 04:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-08-24 17:15 - 2014-10-29 04:17 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2015-08-24 17:15 - 2014-10-29 04:17 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-08-24 17:15 - 2014-10-29 04:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\imapi.dll
2015-08-24 17:15 - 2014-10-29 04:17 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\WinSyncProviders.dll
2015-08-24 17:15 - 2014-10-29 04:13 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll
2015-08-24 17:15 - 2014-10-29 04:12 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\fhshl.dll
2015-08-24 17:15 - 2014-10-29 04:11 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\dmdlgs.dll
2015-08-24 17:15 - 2014-10-29 04:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\dsprop.dll
2015-08-24 17:15 - 2014-10-29 04:09 - 00601600 _____ (Microsoft Corporation) C:\Windows\system32\psr.exe
2015-08-24 17:15 - 2014-10-29 04:09 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2015-08-24 17:15 - 2014-10-29 04:09 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll
2015-08-24 17:15 - 2014-10-29 04:08 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-08-24 17:15 - 2014-10-29 04:08 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll
2015-08-24 17:15 - 2014-10-29 04:08 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContent.dll
2015-08-24 17:15 - 2014-10-29 04:07 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2015-08-24 17:15 - 2014-10-29 04:07 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll
2015-08-24 17:15 - 2014-10-29 04:06 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2015-08-24 17:15 - 2014-10-29 04:06 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\cmdial32.dll
2015-08-24 17:15 - 2014-10-29 04:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\vssadmin.exe
2015-08-24 17:15 - 2014-10-29 04:04 - 00460288 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2015-08-24 17:15 - 2014-10-29 04:03 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\dsquery.dll
2015-08-24 17:15 - 2014-10-29 04:03 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2015-08-24 17:15 - 2014-10-29 04:03 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\xwtpw32.dll
2015-08-24 17:15 - 2014-10-29 04:03 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\SoundRecorder.exe
2015-08-24 17:15 - 2014-10-29 04:02 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2015-08-24 17:15 - 2014-10-29 04:01 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2015-08-24 17:15 - 2014-10-29 04:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2015-08-24 17:15 - 2014-10-29 04:00 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\nlhtml.dll
2015-08-24 17:15 - 2014-10-29 03:59 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2015-08-24 17:15 - 2014-10-29 03:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2015-08-24 17:15 - 2014-10-29 03:59 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2015-08-24 17:15 - 2014-10-29 03:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbnetlib.dll
2015-08-24 17:15 - 2014-10-29 03:58 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\radardt.dll
2015-08-24 17:15 - 2014-10-29 03:57 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\BthHFSrv.dll
2015-08-24 17:15 - 2014-10-29 03:57 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drt.dll
2015-08-24 17:15 - 2014-10-29 03:57 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWMDRM.dll
2015-08-24 17:15 - 2014-10-29 03:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2015-08-24 17:15 - 2014-10-29 03:56 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWiaCompat.dll
2015-08-24 17:15 - 2014-10-29 03:56 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\wkspbrokerAx.dll
2015-08-24 17:15 - 2014-10-29 03:55 - 00142848 _____ C:\Windows\system32\OEMLicense.dll
2015-08-24 17:15 - 2014-10-29 03:55 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput.dll
2015-08-24 17:15 - 2014-10-29 03:54 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfui.dll
2015-08-24 17:15 - 2014-10-29 03:53 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2015-08-24 17:15 - 2014-10-29 03:53 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
2015-08-24 17:15 - 2014-10-29 03:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll
2015-08-24 17:15 - 2014-10-29 03:52 - 00181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oledlg.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmscript.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2015-08-24 17:15 - 2014-10-29 03:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcompos.dll
2015-08-24 17:15 - 2014-10-29 03:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2015-08-24 17:15 - 2014-10-29 03:50 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2015-08-24 17:15 - 2014-10-29 03:50 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcecompact40.dll
2015-08-24 17:15 - 2014-10-29 03:50 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscript.ocx
2015-08-24 17:15 - 2014-10-29 03:49 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2015-08-24 17:15 - 2014-10-29 03:49 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-08-24 17:15 - 2014-10-29 03:49 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\immersivetpmvscmgrsvr.exe
2015-08-24 17:15 - 2014-10-29 03:49 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\tpmvscmgrsvr.exe
2015-08-24 17:15 - 2014-10-29 03:49 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\rmttpmvscmgrsvr.exe
2015-08-24 17:15 - 2014-10-29 03:49 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax
2015-08-24 17:15 - 2014-10-29 03:49 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll
2015-08-24 17:15 - 2014-10-29 03:49 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll
2015-08-24 17:15 - 2014-10-29 03:48 - 00311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll
2015-08-24 17:15 - 2014-10-29 03:48 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmusic.dll
2015-08-24 17:15 - 2014-10-29 03:47 - 00135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassvcs.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mycomput.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00188416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssha.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiageng.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2015-08-24 17:15 - 2014-10-29 03:46 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax
2015-08-24 17:15 - 2014-10-29 03:46 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Management.Workplace.WorkplaceSettings.dll
2015-08-24 17:15 - 2014-10-29 03:45 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPSTAT.EXE
2015-08-24 17:15 - 2014-10-29 03:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-08-24 17:15 - 2014-10-29 03:45 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2015-08-24 17:15 - 2014-10-29 03:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2015-08-24 17:15 - 2014-10-29 03:44 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasplap.dll
2015-08-24 17:15 - 2014-10-29 03:43 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3gpui.dll
2015-08-24 17:15 - 2014-10-29 03:43 - 00196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-08-24 17:15 - 2014-10-29 03:43 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr
2015-08-24 17:15 - 2014-10-29 03:43 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2015-08-24 17:15 - 2014-10-29 03:42 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advpack.dll
2015-08-24 17:15 - 2014-10-29 03:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2015-08-24 17:15 - 2014-10-29 03:40 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll
2015-08-24 17:15 - 2014-10-29 03:40 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\softkbd.dll
2015-08-24 17:15 - 2014-10-29 03:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll
2015-08-24 17:15 - 2014-10-29 03:39 - 00382976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2015-08-24 17:15 - 2014-10-29 03:39 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe
2015-08-24 17:15 - 2014-10-29 03:39 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll
2015-08-24 17:15 - 2014-10-29 03:38 - 00404480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2015-08-24 17:15 - 2014-10-29 03:38 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmgp.dll
2015-08-24 17:15 - 2014-10-29 03:38 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2015-08-24 17:15 - 2014-10-29 03:38 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2015-08-24 17:15 - 2014-10-29 03:38 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll
2015-08-24 17:15 - 2014-10-29 03:38 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi.dll
2015-08-24 17:15 - 2014-10-29 03:38 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSyncProviders.dll
2015-08-24 17:15 - 2014-10-29 03:35 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll
2015-08-24 17:15 - 2014-10-29 03:34 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\difxapi.dll
2015-08-24 17:15 - 2014-10-29 03:34 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe
2015-08-24 17:15 - 2014-10-29 03:34 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedit.exe
2015-08-24 17:15 - 2014-10-29 03:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsprop.dll
2015-08-24 17:15 - 2014-10-29 03:32 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2015-08-24 17:15 - 2014-10-29 03:32 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2015-08-24 17:15 - 2014-10-29 03:32 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2015-08-24 17:15 - 2014-10-29 03:31 - 00392704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2015-08-24 17:15 - 2014-10-29 03:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2015-08-24 17:15 - 2014-10-29 03:31 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2015-08-24 17:15 - 2014-10-29 03:31 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiagprv.dll
2015-08-24 17:15 - 2014-10-29 03:31 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadss.dll
2015-08-24 17:15 - 2014-10-29 03:31 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rshx32.dll
2015-08-24 17:15 - 2014-10-29 03:30 - 02118144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll
2015-08-24 17:15 - 2014-10-29 03:30 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2015-08-24 17:15 - 2014-10-29 03:30 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2015-08-24 17:15 - 2014-10-29 03:30 - 00184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2015-08-24 17:15 - 2014-10-29 03:28 - 00812032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2015-08-24 17:15 - 2014-10-29 03:28 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsquery.dll
2015-08-24 17:15 - 2014-10-29 03:28 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-08-24 17:15 - 2014-10-29 03:28 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
2015-08-24 17:15 - 2014-10-29 03:27 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll
2015-08-24 17:15 - 2014-10-29 03:27 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2015-08-24 17:15 - 2014-10-29 03:27 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\BrokerLib.dll
2015-08-24 17:15 - 2014-10-29 03:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2015-08-24 17:15 - 2014-10-29 03:27 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\CallButtons.dll
2015-08-24 17:15 - 2014-10-29 03:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
2015-08-24 17:15 - 2014-10-29 03:26 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2015-08-24 17:15 - 2014-10-29 03:26 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2015-08-24 17:15 - 2014-10-29 03:26 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL
2015-08-24 17:15 - 2014-10-29 03:26 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mimofcodec.dll
2015-08-24 17:15 - 2014-10-29 03:26 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2015-08-24 17:15 - 2014-10-29 03:25 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrdc.dll
2015-08-24 17:15 - 2014-10-29 03:25 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-08-24 17:15 - 2014-10-29 03:25 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2015-08-24 17:15 - 2014-10-29 03:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlhtml.dll
2015-08-24 17:15 - 2014-10-29 03:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\negoexts.dll
2015-08-24 17:15 - 2014-10-29 03:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceWiaCompat.dll
2015-08-24 17:15 - 2014-10-29 03:23 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2015-08-24 17:15 - 2014-10-29 03:23 - 00107008 _____ C:\Windows\SysWOW64\OEMLicense.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\Winlangdb.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Compression.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\trkwks.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\WinRtTracing.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-08-24 17:15 - 2014-10-29 03:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\bcdprov.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00425984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\wmidcom.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\comrepl.dll
2015-08-24 17:15 - 2014-10-29 03:20 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\msdtclog.dll
2015-08-24 17:15 - 2014-10-29 03:19 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\txflog.dll
2015-08-24 17:15 - 2014-10-29 03:17 - 01296896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\connect.dll
2015-08-24 17:15 - 2014-10-29 03:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\qwave.dll
2015-08-24 17:15 - 2014-10-29 03:16 - 00675328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll
2015-08-24 17:15 - 2014-10-29 03:16 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RADCUI.dll
2015-08-24 17:15 - 2014-10-29 03:16 - 00238592 _____ (Microsoft Corporation) C:\Windows\system32\mlang.dll
2015-08-24 17:15 - 2014-10-29 03:16 - 00173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2015-08-24 17:15 - 2014-10-29 03:16 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2015-08-24 17:15 - 2014-10-29 03:16 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mtstocom.exe
2015-08-24 17:15 - 2014-10-29 03:16 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-08-24 17:15 - 2014-10-29 03:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-08-24 17:15 - 2014-10-29 03:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-08-24 17:15 - 2014-10-29 03:14 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msoert2.dll
2015-08-24 17:15 - 2014-10-29 03:13 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apds.dll
2015-08-24 17:15 - 2014-10-29 03:12 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\TtlsAuth.dll
2015-08-24 17:15 - 2014-10-29 03:12 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2015-08-24 17:15 - 2014-10-29 03:11 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2015-08-24 17:15 - 2014-10-29 03:10 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2015-08-24 17:15 - 2014-10-29 03:10 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll
2015-08-24 17:15 - 2014-10-29 03:10 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2015-08-24 17:15 - 2014-10-29 03:08 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2015-08-24 17:15 - 2014-10-29 03:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll
2015-08-24 17:15 - 2014-10-29 03:07 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-08-24 17:15 - 2014-10-29 03:06 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2015-08-24 17:15 - 2014-10-29 03:06 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2015-08-24 17:15 - 2014-10-29 03:05 - 00228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-08-24 17:15 - 2014-10-29 03:05 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2015-08-24 17:15 - 2014-10-29 03:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\loadperf.dll
2015-08-24 17:15 - 2014-10-29 03:04 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe
2015-08-24 17:15 - 2014-10-29 03:04 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ufat.dll
2015-08-24 17:15 - 2014-10-29 03:03 - 00290304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2015-08-24 17:15 - 2014-10-29 03:03 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provthrd.dll
2015-08-24 17:15 - 2014-10-29 03:03 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\TetheringStation.dll
2015-08-24 17:15 - 2014-10-29 03:03 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\SimCfg.dll
2015-08-24 17:15 - 2014-10-29 03:03 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasman.dll
2015-08-24 17:15 - 2014-10-29 03:03 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2015-08-24 17:15 - 2014-10-29 03:03 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\negoexts.dll
2015-08-24 17:15 - 2014-10-29 03:02 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-08-24 17:15 - 2014-10-29 03:01 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\windowslivelogin.dll
2015-08-24 17:15 - 2014-10-29 03:00 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2015-08-24 17:15 - 2014-10-29 03:00 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2015-08-24 17:15 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dllhst3g.exe
2015-08-24 17:15 - 2014-10-29 02:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmitomi.dll
2015-08-24 17:15 - 2014-10-29 02:59 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidcom.dll
2015-08-24 17:15 - 2014-10-29 02:59 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2015-08-24 17:15 - 2014-10-29 02:59 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2015-08-24 17:15 - 2014-10-29 02:59 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comrepl.dll
2015-08-24 17:15 - 2014-10-29 02:58 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2015-08-24 17:15 - 2014-10-29 02:58 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-08-24 17:15 - 2014-10-29 02:58 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fundisc.dll
2015-08-24 17:15 - 2014-10-29 02:58 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2015-08-24 17:15 - 2014-10-29 02:58 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\txflog.dll
2015-08-24 17:15 - 2014-10-29 02:58 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2015-08-24 17:15 - 2014-10-29 02:57 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\ndfapi.dll
2015-08-24 17:15 - 2014-10-29 02:57 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mlang.dll
2015-08-24 17:15 - 2014-10-29 02:57 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtstocom.exe
2015-08-24 17:15 - 2014-10-29 02:57 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll
2015-08-24 17:15 - 2014-10-29 02:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-08-24 17:15 - 2014-10-29 02:55 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2015-08-24 17:15 - 2014-10-29 02:55 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsAuth.dll
2015-08-24 17:15 - 2014-10-29 02:55 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\profsvcext.dll
2015-08-24 17:15 - 2014-10-29 02:54 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\BioCredProv.dll
2015-08-24 17:15 - 2014-10-29 02:54 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2015-08-24 17:15 - 2014-10-29 02:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\AltTab.dll
2015-08-24 17:15 - 2014-10-29 02:52 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll
2015-08-24 17:15 - 2014-10-29 02:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-08-24 17:15 - 2014-10-29 02:51 - 03317248 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2015-08-24 17:15 - 2014-10-29 02:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimCfg.dll
2015-08-24 17:15 - 2014-10-29 02:47 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2015-08-24 17:15 - 2014-10-29 02:46 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-08-24 17:15 - 2014-10-29 02:46 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2015-08-24 17:15 - 2014-10-29 02:45 - 01197568 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2015-08-24 17:15 - 2014-10-29 02:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfapi.dll
2015-08-24 17:15 - 2014-10-29 02:45 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll
2015-08-24 17:15 - 2014-10-29 02:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-08-24 17:15 - 2014-10-29 02:44 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll
2015-08-24 17:15 - 2014-10-29 02:43 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BioCredProv.dll
2015-08-24 17:15 - 2014-10-29 02:42 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll
2015-08-24 17:15 - 2014-10-29 02:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2015-08-24 17:15 - 2014-10-29 02:41 - 00472064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2015-08-24 17:15 - 2014-10-29 02:39 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingMonitor.dll
2015-08-24 17:15 - 2014-10-29 02:37 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll
2015-08-24 17:15 - 2014-10-29 02:35 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-08-24 17:15 - 2014-10-29 02:35 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2015-08-24 17:15 - 2014-10-29 02:35 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2015-08-24 17:15 - 2014-10-29 02:31 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe
2015-08-24 17:15 - 2014-10-29 02:30 - 00221696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2015-08-24 17:14 - 2014-10-29 06:10 - 00084184 _____ (Microsoft Corporation) C:\Windows\system32\taskhostex.exe
2015-08-24 17:14 - 2014-10-29 06:09 - 00277368 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll
2015-08-24 17:14 - 2014-10-29 06:09 - 00191032 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2015-08-24 17:14 - 2014-10-29 06:04 - 00197832 _____ (Microsoft Corporation) C:\Windows\system32\dssenh.dll
2015-08-24 17:14 - 2014-10-29 06:04 - 00122912 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-08-24 17:14 - 2014-10-29 06:04 - 00097608 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2015-08-24 17:14 - 2014-10-29 06:04 - 00093000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-08-24 17:14 - 2014-10-29 06:03 - 00196928 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2015-08-24 17:14 - 2014-10-29 06:00 - 00030472 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogHost.exe
2015-08-24 17:14 - 2014-10-29 05:59 - 00136512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-08-24 17:14 - 2014-10-29 05:57 - 00116696 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2015-08-24 17:14 - 2014-10-29 05:57 - 00098664 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2015-08-24 17:14 - 2014-10-29 05:55 - 00076432 _____ (Microsoft Corporation) C:\Windows\system32\sessionmsg.exe
2015-08-24 17:14 - 2014-10-29 05:53 - 00080528 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-08-24 17:14 - 2014-10-29 05:52 - 00106384 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.dll
2015-08-24 17:14 - 2014-10-29 05:52 - 00101736 _____ (Microsoft Corporation) C:\Windows\system32\mfAACEnc.dll
2015-08-24 17:14 - 2014-10-29 05:52 - 00100672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-08-24 17:14 - 2014-10-29 05:52 - 00090880 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2015-08-24 17:14 - 2014-10-29 05:51 - 00070288 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2015-08-24 17:14 - 2014-10-29 05:18 - 00255136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powrprof.dll
2015-08-24 17:14 - 2014-10-29 05:15 - 00168256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2015-08-24 17:14 - 2014-10-29 05:15 - 00156992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dssenh.dll
2015-08-24 17:14 - 2014-10-29 05:15 - 00096032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-08-24 17:14 - 2014-10-29 05:15 - 00073840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-08-24 17:14 - 2014-10-29 05:15 - 00051608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll
2015-08-24 17:14 - 2014-10-29 05:11 - 00076912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
2015-08-24 17:14 - 2014-10-29 05:10 - 00091936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2015-08-24 17:14 - 2014-10-29 05:07 - 00110512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-08-24 17:14 - 2014-10-29 05:07 - 00018040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
2015-08-24 17:14 - 2014-10-29 05:06 - 00090368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfAACEnc.dll
2015-08-24 17:14 - 2014-10-29 05:06 - 00074824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-08-24 17:14 - 2014-10-29 05:05 - 00052152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2015-08-24 17:14 - 2014-10-29 04:46 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-08-24 17:14 - 2014-10-29 04:45 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2015-08-24 17:14 - 2014-10-29 04:45 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-08-24 17:14 - 2014-10-29 04:45 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2015-08-24 17:14 - 2014-10-29 04:45 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-08-24 17:14 - 2014-10-29 04:45 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-08-24 17:14 - 2014-10-29 04:45 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys
2015-08-24 17:14 - 2014-10-29 04:45 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-08-24 17:14 - 2014-10-29 04:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll
2015-08-24 17:14 - 2014-10-29 04:44 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll
2015-08-24 17:14 - 2014-10-29 04:44 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\spoolss.dll
2015-08-24 17:14 - 2014-10-29 04:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\fmapi.dll
2015-08-24 17:14 - 2014-10-29 04:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2015-08-24 17:14 - 2014-10-29 04:41 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2015-08-24 17:14 - 2014-10-29 04:40 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2015-08-24 17:14 - 2014-10-29 04:36 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2015-08-24 17:14 - 2014-10-29 04:35 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2015-08-24 17:14 - 2014-10-29 04:34 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-08-24 17:14 - 2014-10-29 04:34 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-08-24 17:14 - 2014-10-29 04:34 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2015-08-24 17:14 - 2014-10-29 04:34 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\iasdatastore.dll
2015-08-24 17:14 - 2014-10-29 04:34 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\netprovisionsp.dll
2015-08-24 17:14 - 2014-10-29 04:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\bitsigd.dll
2015-08-24 17:14 - 2014-10-29 04:33 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2015-08-24 17:14 - 2014-10-29 04:33 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\usbceip.dll
2015-08-24 17:14 - 2014-10-29 04:33 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll
2015-08-24 17:14 - 2014-10-29 04:33 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2015-08-24 17:14 - 2014-10-29 04:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2015-08-24 17:14 - 2014-10-29 04:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2015-08-24 17:14 - 2014-10-29 04:31 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2015-08-24 17:14 - 2014-10-29 04:31 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx
2015-08-24 17:14 - 2014-10-29 04:31 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchph.dll
2015-08-24 17:14 - 2014-10-29 04:31 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll
2015-08-24 17:14 - 2014-10-29 04:30 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Syncreg.dll
2015-08-24 17:14 - 2014-10-29 04:29 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\verifier.exe
2015-08-24 17:14 - 2014-10-29 04:29 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\fhsvc.dll
2015-08-24 17:14 - 2014-10-29 04:29 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchapi.dll
2015-08-24 17:14 - 2014-10-29 04:28 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2015-08-24 17:14 - 2014-10-29 04:27 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2015-08-24 17:14 - 2014-10-29 04:27 - 00138752 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
2015-08-24 17:14 - 2014-10-29 04:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2015-08-24 17:14 - 2014-10-29 04:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2015-08-24 17:14 - 2014-10-29 04:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TabbtnEx.dll
2015-08-24 17:14 - 2014-10-29 04:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll
2015-08-24 17:14 - 2014-10-29 04:26 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2015-08-24 17:14 - 2014-10-29 04:26 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\NdisImPlatform.dll
2015-08-24 17:14 - 2014-10-29 04:26 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2015-08-24 17:14 - 2014-10-29 04:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\nlahc.dll
2015-08-24 17:14 - 2014-10-29 04:26 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2015-08-24 17:14 - 2014-10-29 04:26 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2015-08-24 17:14 - 2014-10-29 04:25 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\rasplap.dll
2015-08-24 17:14 - 2014-10-29 04:25 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe
2015-08-24 17:14 - 2014-10-29 04:25 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2015-08-24 17:14 - 2014-10-29 04:25 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\iashlpr.dll
2015-08-24 17:14 - 2014-10-29 04:24 - 00788480 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2015-08-24 17:14 - 2014-10-29 04:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2015-08-24 17:14 - 2014-10-29 04:24 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2015-08-24 17:14 - 2014-10-29 04:23 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\tapi32.dll
2015-08-24 17:14 - 2014-10-29 04:23 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\dot3mm.dll
2015-08-24 17:14 - 2014-10-29 04:23 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\scripto.dll
2015-08-24 17:14 - 2014-10-29 04:22 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-08-24 17:14 - 2014-10-29 04:22 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\igdDiag.dll
2015-08-24 17:14 - 2014-10-29 04:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2015-08-24 17:14 - 2014-10-29 04:20 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2015-08-24 17:14 - 2014-10-29 04:20 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2015-08-24 17:14 - 2014-10-29 04:19 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2015-08-24 17:14 - 2014-10-29 04:19 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\icsigd.dll
2015-08-24 17:14 - 2014-10-29 04:19 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2015-08-24 17:14 - 2014-10-29 04:19 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\WinMsoIrmProtector.dll
2015-08-24 17:14 - 2014-10-29 04:19 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\WinOpcIrmProtector.dll
2015-08-24 17:14 - 2014-10-29 04:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-08-24 17:14 - 2014-10-29 04:18 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\DAMM.dll
2015-08-24 17:14 - 2014-10-29 04:18 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\TapiMigPlugin.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\SNTSearch.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\nlmgp.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-08-24 17:14 - 2014-10-29 04:17 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\msdart.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\ndfhcdiscovery.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\correngine.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\dot3hc.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\playlistfolder.dll
2015-08-24 17:14 - 2014-10-29 04:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2015-08-24 17:14 - 2014-10-29 04:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2015-08-24 17:14 - 2014-10-29 04:16 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2015-08-24 17:14 - 2014-10-29 04:16 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll
2015-08-24 17:14 - 2014-10-29 04:13 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2015-08-24 17:14 - 2014-10-29 04:12 - 00660480 _____ (Microsoft Corporation) C:\Windows\system32\dccw.exe
2015-08-24 17:14 - 2014-10-29 04:12 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2015-08-24 17:14 - 2014-10-29 04:12 - 00096256 _____ C:\Windows\system32\BthpanContextHandler.dll
2015-08-24 17:14 - 2014-10-29 04:12 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\WABSyncProvider.dll
2015-08-24 17:14 - 2014-10-29 04:11 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-08-24 17:14 - 2014-10-29 04:11 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2015-08-24 17:14 - 2014-10-29 04:10 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll
2015-08-24 17:14 - 2014-10-29 04:10 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\winsockhc.dll
2015-08-24 17:14 - 2014-10-29 04:09 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\cttune.exe
2015-08-24 17:14 - 2014-10-29 04:09 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll
2015-08-24 17:14 - 2014-10-29 04:08 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\sdiagprv.dll
2015-08-24 17:14 - 2014-10-29 04:07 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2015-08-24 17:14 - 2014-10-29 04:07 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\EhStorShell.dll
2015-08-24 17:14 - 2014-10-29 04:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2015-08-24 17:14 - 2014-10-29 04:06 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2015-08-24 17:14 - 2014-10-29 04:06 - 00113664 _____ (Microsoft) C:\Windows\system32\SMBHelperClass.dll
2015-08-24 17:14 - 2014-10-29 04:06 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\ndishc.dll
2015-08-24 17:14 - 2014-10-29 04:05 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\systeminfo.exe
2015-08-24 17:14 - 2014-10-29 04:05 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\wiascanprofiles.dll
2015-08-24 17:14 - 2014-10-29 04:04 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2015-08-24 17:14 - 2014-10-29 04:04 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2015-08-24 17:14 - 2014-10-29 04:04 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2015-08-24 17:14 - 2014-10-29 04:04 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe
2015-08-24 17:14 - 2014-10-29 04:04 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe
2015-08-24 17:14 - 2014-10-29 04:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll
2015-08-24 17:14 - 2014-10-29 04:02 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\EaseOfAccessDialog.exe
2015-08-24 17:14 - 2014-10-29 04:01 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\dnshc.dll
2015-08-24 17:14 - 2014-10-29 04:00 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-08-24 17:14 - 2014-10-29 04:00 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll
2015-08-24 17:14 - 2014-10-29 04:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SPInf.dll
2015-08-24 17:14 - 2014-10-29 03:59 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdadiag.dll
2015-08-24 17:14 - 2014-10-29 03:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll
2015-08-24 17:14 - 2014-10-29 03:59 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll
2015-08-24 17:14 - 2014-10-29 03:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\networkitemfactory.dll
2015-08-24 17:14 - 2014-10-29 03:58 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2015-08-24 17:14 - 2014-10-29 03:58 - 00160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2015-08-24 17:14 - 2014-10-29 03:58 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2015-08-24 17:14 - 2014-10-29 03:58 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2015-08-24 17:14 - 2014-10-29 03:57 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\pwlauncher.dll
2015-08-24 17:14 - 2014-10-29 03:57 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldpc.dll
2015-08-24 17:14 - 2014-10-29 03:57 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\raserver.exe
2015-08-24 17:14 - 2014-10-29 03:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssdpapi.dll
2015-08-24 17:14 - 2014-10-29 03:56 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\wiashext.dll
2015-08-24 17:14 - 2014-10-29 03:56 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\wlandlg.dll
2015-08-24 17:14 - 2014-10-29 03:56 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2015-08-24 17:14 - 2014-10-29 03:56 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtfwd.dll
2015-08-24 17:14 - 2014-10-29 03:56 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2015-08-24 17:14 - 2014-10-29 03:55 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\rekeywiz.exe
2015-08-24 17:14 - 2014-10-29 03:54 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\WLanHC.dll
2015-08-24 17:14 - 2014-10-29 03:54 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2015-08-24 17:14 - 2014-10-29 03:54 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll
2015-08-24 17:14 - 2014-10-29 03:53 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2015-08-24 17:14 - 2014-10-29 03:53 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll
2015-08-24 17:14 - 2014-10-29 03:53 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\winethc.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\L2SecHC.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fms.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2015-08-24 17:14 - 2014-10-29 03:52 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll
2015-08-24 17:14 - 2014-10-29 03:51 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsdmo.dll
2015-08-24 17:14 - 2014-10-29 03:51 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll
2015-08-24 17:14 - 2014-10-29 03:51 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe
2015-08-24 17:14 - 2014-10-29 03:51 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2015-08-24 17:14 - 2014-10-29 03:50 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll
2015-08-24 17:14 - 2014-10-29 03:49 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmview.ocx
2015-08-24 17:14 - 2014-10-29 03:48 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verifier.exe
2015-08-24 17:14 - 2014-10-29 03:48 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaatext.dll
2015-08-24 17:14 - 2014-10-29 03:48 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Syncreg.dll
2015-08-24 17:14 - 2014-10-29 03:47 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2015-08-24 17:14 - 2014-10-29 03:46 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2015-08-24 17:14 - 2014-10-29 03:46 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2015-08-24 17:14 - 2014-10-29 03:46 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll
2015-08-24 17:14 - 2014-10-29 03:46 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2015-08-24 17:14 - 2014-10-29 03:45 - 01678336 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2015-08-24 17:14 - 2014-10-29 03:45 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2015-08-24 17:14 - 2014-10-29 03:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax
2015-08-24 17:14 - 2014-10-29 03:44 - 00778752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr
2015-08-24 17:14 - 2014-10-29 03:44 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr
2015-08-24 17:14 - 2014-10-29 03:44 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr
2015-08-24 17:14 - 2014-10-29 03:43 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\msoert2.dll
2015-08-24 17:14 - 2014-10-29 03:43 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll
2015-08-24 17:14 - 2014-10-29 03:43 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2015-08-24 17:14 - 2014-10-29 03:43 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bdaplgin.ax
2015-08-24 17:14 - 2014-10-29 03:42 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2015-08-24 17:14 - 2014-10-29 03:41 - 00287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\modemui.dll
2015-08-24 17:14 - 2014-10-29 03:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.dll
2015-08-24 17:14 - 2014-10-29 03:41 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax
2015-08-24 17:14 - 2014-10-29 03:40 - 00292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll
2015-08-24 17:14 - 2014-10-29 03:40 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl
2015-08-24 17:14 - 2014-10-29 03:40 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinMsoIrmProtector.dll
2015-08-24 17:14 - 2014-10-29 03:40 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-08-24 17:14 - 2014-10-29 03:40 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinOpcIrmProtector.dll
2015-08-24 17:14 - 2014-10-29 03:39 - 00201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icsigd.dll
2015-08-24 17:14 - 2014-10-29 03:39 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-08-24 17:14 - 2014-10-29 03:38 - 00898048 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2015-08-24 17:14 - 2014-10-29 03:38 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2015-08-24 17:14 - 2014-10-29 03:38 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdart.dll
2015-08-24 17:14 - 2014-10-29 03:38 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe
2015-08-24 17:14 - 2014-10-29 03:38 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2015-08-24 17:14 - 2014-10-29 03:37 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2015-08-24 17:14 - 2014-10-29 03:34 - 00644608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dccw.exe
2015-08-24 17:14 - 2014-10-29 03:34 - 00430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll
2015-08-24 17:14 - 2014-10-29 03:34 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2015-08-24 17:14 - 2014-10-29 03:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmi.dll
2015-08-24 17:14 - 2014-10-29 03:32 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2015-08-24 17:14 - 2014-10-29 03:32 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cttune.exe
2015-08-24 17:14 - 2014-10-29 03:32 - 00149504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RstrtMgr.dll
2015-08-24 17:14 - 2014-10-29 03:32 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll
2015-08-24 17:14 - 2014-10-29 03:30 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssadmin.exe
2015-08-24 17:14 - 2014-10-29 03:30 - 00085504 _____ (Microsoft) C:\Windows\SysWOW64\SMBHelperClass.dll
2015-08-24 17:14 - 2014-10-29 03:29 - 00528896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2015-08-24 17:14 - 2014-10-29 03:29 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingFolder.dll
2015-08-24 17:14 - 2014-10-29 03:29 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2015-08-24 17:14 - 2014-10-29 03:29 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systeminfo.exe
2015-08-24 17:14 - 2014-10-29 03:29 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\getmac.exe
2015-08-24 17:14 - 2014-10-29 03:28 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotepg.dll
2015-08-24 17:14 - 2014-10-29 03:28 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwtpw32.dll
2015-08-24 17:14 - 2014-10-29 03:28 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe
2015-08-24 17:14 - 2014-10-29 03:28 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe
2015-08-24 17:14 - 2014-10-29 03:28 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptuiwizard.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00307200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\mi.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\devrtl.dll
2015-08-24 17:14 - 2014-10-29 03:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe
2015-08-24 17:14 - 2014-10-29 03:26 - 00330752 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2015-08-24 17:14 - 2014-10-29 03:26 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-08-24 17:14 - 2014-10-29 03:26 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\uexfat.dll
2015-08-24 17:14 - 2014-10-29 03:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\wecapi.dll
2015-08-24 17:14 - 2014-10-29 03:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2015-08-24 17:14 - 2014-10-29 03:26 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll
2015-08-24 17:14 - 2014-10-29 03:26 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2015-08-24 17:14 - 2014-10-29 03:25 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2015-08-24 17:14 - 2014-10-29 03:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleprn.dll
2015-08-24 17:14 - 2014-10-29 03:25 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\wecutil.exe
2015-08-24 17:14 - 2014-10-29 03:25 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-08-24 17:14 - 2014-10-29 03:25 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2015-08-24 17:14 - 2014-10-29 03:24 - 00446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiashext.dll
2015-08-24 17:14 - 2014-10-29 03:24 - 00178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceWMDRM.dll
2015-08-24 17:14 - 2014-10-29 03:24 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2015-08-24 17:14 - 2014-10-29 03:24 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2015-08-24 17:14 - 2014-10-29 03:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raserver.exe
2015-08-24 17:14 - 2014-10-29 03:23 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlandlg.dll
2015-08-24 17:14 - 2014-10-29 03:23 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkspbrokerAx.dll
2015-08-24 17:14 - 2014-10-29 03:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-08-24 17:14 - 2014-10-29 03:22 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rekeywiz.exe
2015-08-24 17:14 - 2014-10-29 03:22 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmInit.exe
2015-08-24 17:14 - 2014-10-29 03:21 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\alg.exe
2015-08-24 17:14 - 2014-10-29 03:21 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\nduprov.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\threadpoolwinrt.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\ddrawex.dll
2015-08-24 17:14 - 2014-10-29 03:21 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll
2015-08-24 17:14 - 2014-10-29 03:20 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommon.dll
2015-08-24 17:14 - 2014-10-29 03:20 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2015-08-24 17:14 - 2014-10-29 03:20 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSXP32.dll
2015-08-24 17:14 - 2014-10-29 03:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\prvdmofcomp.dll
2015-08-24 17:14 - 2014-10-29 03:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\ELSCore.dll
2015-08-24 17:14 - 2014-10-29 03:19 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\smbwmiv2.dll
2015-08-24 17:14 - 2014-10-29 03:19 - 00092672 _____ (Microsoft) C:\Windows\system32\VaultRoaming.dll
2015-08-24 17:14 - 2014-10-29 03:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe
2015-08-24 17:14 - 2014-10-29 03:19 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\colbact.dll
2015-08-24 17:14 - 2014-10-29 03:18 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-08-24 17:14 - 2014-10-29 03:18 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2015-08-24 17:14 - 2014-10-29 03:17 - 00287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl
2015-08-24 17:14 - 2014-10-29 03:17 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\cryptcatsvc.dll
2015-08-24 17:14 - 2014-10-29 03:17 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll
2015-08-24 17:14 - 2014-10-29 03:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\EAPQEC.DLL
2015-08-24 17:14 - 2014-10-29 03:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll
2015-08-24 17:14 - 2014-10-29 03:16 - 01669632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll
2015-08-24 17:14 - 2014-10-29 03:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll
2015-08-24 17:14 - 2014-10-29 03:15 - 01129984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2015-08-24 17:14 - 2014-10-29 03:15 - 00671744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll
2015-08-24 17:14 - 2014-10-29 03:15 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\SimAuth.dll
2015-08-24 17:14 - 2014-10-29 03:15 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManagerAPI.dll
2015-08-24 17:14 - 2014-10-29 03:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\eapsvc.dll
2015-08-24 17:14 - 2014-10-29 03:12 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2015-08-24 17:14 - 2014-10-29 03:11 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2015-08-24 17:14 - 2014-10-29 03:10 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2015-08-24 17:14 - 2014-10-29 03:10 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2015-08-24 17:14 - 2014-10-29 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\dafupnp.dll
2015-08-24 17:14 - 2014-10-29 03:09 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll
2015-08-24 17:14 - 2014-10-29 03:07 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unregmp2.exe
2015-08-24 17:14 - 2014-10-29 03:06 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-08-24 17:14 - 2014-10-29 03:06 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2015-08-24 17:14 - 2014-10-29 03:05 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll
2015-08-24 17:14 - 2014-10-29 03:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll
2015-08-24 17:14 - 2014-10-29 03:04 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mi.dll
2015-08-24 17:14 - 2014-10-29 03:04 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallButtons.dll
2015-08-24 17:14 - 2014-10-29 03:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uexfat.dll
2015-08-24 17:14 - 2014-10-29 03:04 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll
2015-08-24 17:14 - 2014-10-29 03:04 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xcopy.exe
2015-08-24 17:14 - 2014-10-29 03:03 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\certca.dll
2015-08-24 17:14 - 2014-10-29 03:03 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2015-08-24 17:14 - 2014-10-29 03:03 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimofcodec.dll
2015-08-24 17:14 - 2014-10-29 03:03 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-08-24 17:14 - 2014-10-29 03:02 - 00513536 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Winlangdb.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\korwbrkr.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2015-08-24 17:14 - 2014-10-29 03:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ELSCore.dll
2015-08-24 17:14 - 2014-10-29 02:59 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll
2015-08-24 17:14 - 2014-10-29 02:59 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colbact.dll
2015-08-24 17:14 - 2014-10-29 02:59 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prvdmofcomp.dll
2015-08-24 17:14 - 2014-10-29 02:58 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll
2015-08-24 17:14 - 2014-10-29 02:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingHost.exe
2015-08-24 17:14 - 2014-10-29 02:57 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimAuth.dll
2015-08-24 17:14 - 2014-10-29 02:57 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\wlidfdp.dll
2015-08-24 17:14 - 2014-10-29 02:57 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdSSDP.dll
2015-08-24 17:14 - 2014-10-29 02:57 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2015-08-24 17:14 - 2014-10-29 02:57 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmifw.dll
2015-08-24 17:14 - 2014-10-29 02:56 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2015-08-24 17:14 - 2014-10-29 02:56 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2015-08-24 17:14 - 2014-10-29 02:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\RDSAppXHelper.dll
2015-08-24 17:14 - 2014-10-29 02:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\AepRoam.dll
2015-08-24 17:14 - 2014-10-29 02:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\ConsentUX.dll
2015-08-24 17:14 - 2014-10-29 02:54 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2015-08-24 17:14 - 2014-10-29 02:54 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2015-08-24 17:14 - 2014-10-29 02:53 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceClassExtension.dll
2015-08-24 17:14 - 2014-10-29 02:53 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBth.dll
2015-08-24 17:14 - 2014-10-29 02:51 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2015-08-24 17:14 - 2014-10-29 02:51 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll
2015-08-24 17:14 - 2014-10-29 02:51 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceElementSource.dll
2015-08-24 17:14 - 2014-10-29 02:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2015-08-24 17:14 - 2014-10-29 02:50 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2015-08-24 17:14 - 2014-10-29 02:50 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eqossnap.dll
2015-08-24 17:14 - 2014-10-29 02:48 - 00178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowslivelogin.dll
2015-08-24 17:14 - 2014-10-29 02:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2015-08-24 17:14 - 2014-10-29 02:46 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2015-08-24 17:14 - 2014-10-29 02:45 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2015-08-24 17:14 - 2014-10-29 02:44 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2015-08-24 17:14 - 2014-10-29 02:43 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceClassExtension.dll
2015-08-24 17:14 - 2014-10-29 02:43 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2015-08-24 17:14 - 2014-10-29 02:42 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2015-08-24 17:14 - 2014-10-29 02:40 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2015-08-24 17:14 - 2014-10-29 02:37 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll
2015-08-24 17:14 - 2014-10-29 02:34 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2015-08-24 17:14 - 2014-10-15 10:32 - 00088896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-08-24 17:14 - 2014-10-12 10:53 - 00054592 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2015-08-24 17:14 - 2014-08-31 02:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-08-24 17:14 - 2014-08-15 02:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-08-24 17:14 - 2014-08-08 18:55 - 00172344 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2015-08-24 17:13 - 2014-10-29 06:11 - 00038792 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe
2015-08-24 17:13 - 2014-10-29 06:09 - 00044912 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2015-08-24 17:13 - 2014-10-29 06:04 - 00149240 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2015-08-24 17:13 - 2014-10-29 06:04 - 00131648 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2015-08-24 17:13 - 2014-10-29 06:04 - 00086744 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2015-08-24 17:13 - 2014-10-29 06:04 - 00044368 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2015-08-24 17:13 - 2014-10-29 05:57 - 00045464 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2015-08-24 17:13 - 2014-10-29 05:57 - 00038736 _____ (Microsoft Corporation) C:\Windows\system32\CredentialUIBroker.exe
2015-08-24 17:13 - 2014-10-29 05:56 - 00089368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys
2015-08-24 17:13 - 2014-10-29 05:55 - 00067656 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2015-08-24 17:13 - 2014-10-29 05:55 - 00064040 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll
2015-08-24 17:13 - 2014-10-29 05:52 - 00029408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-08-24 17:13 - 2014-10-29 05:52 - 00022208 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2015-08-24 17:13 - 2014-10-29 05:17 - 00033088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
2015-08-24 17:13 - 2014-10-29 05:15 - 00110512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll
2015-08-24 17:13 - 2014-10-29 05:15 - 00074352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2015-08-24 17:13 - 2014-10-29 05:15 - 00068168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2015-08-24 17:13 - 2014-10-29 05:15 - 00064552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-08-24 17:13 - 2014-10-29 05:15 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll
2015-08-24 17:13 - 2014-10-29 05:15 - 00035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll
2015-08-24 17:13 - 2014-10-29 05:15 - 00021696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsrole.dll
2015-08-24 17:13 - 2014-10-29 05:11 - 00150776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll
2015-08-24 17:13 - 2014-10-29 05:11 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraSettingsUIHost.exe
2015-08-24 17:13 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll
2015-08-24 17:13 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll
2015-08-24 17:13 - 2014-10-29 05:10 - 00040816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2015-08-24 17:13 - 2014-10-29 05:10 - 00038184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll
2015-08-24 17:13 - 2014-10-29 05:10 - 00034016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialUIBroker.exe
2015-08-24 17:13 - 2014-10-29 05:10 - 00030944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountBroker.exe
2015-08-24 17:13 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PickerHost.exe
2015-08-24 17:13 - 2014-10-29 05:07 - 00039720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll
2015-08-24 17:13 - 2014-10-29 05:06 - 00080016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll
2015-08-24 17:13 - 2014-10-29 04:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\msvcirt.dll
2015-08-24 17:13 - 2014-10-29 04:47 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-08-24 17:13 - 2014-10-29 04:45 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2015-08-24 17:13 - 2014-10-29 04:45 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2015-08-24 17:13 - 2014-10-29 04:45 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2015-08-24 17:13 - 2014-10-29 04:45 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll
2015-08-24 17:13 - 2014-10-29 04:44 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\msdadiag.dll
2015-08-24 17:13 - 2014-10-29 04:44 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\spfileq.dll
2015-08-24 17:13 - 2014-10-29 04:44 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\bderepair.dll
2015-08-24 17:13 - 2014-10-29 04:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\cnvfat.dll
2015-08-24 17:13 - 2014-10-29 04:43 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\radardt.dll
2015-08-24 17:13 - 2014-10-29 04:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2015-08-24 17:13 - 2014-10-29 04:42 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmiv2.dll
2015-08-24 17:13 - 2014-10-29 04:42 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\makecab.exe
2015-08-24 17:13 - 2014-10-29 04:42 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll


Wandalensalz 28.08.2015 15:18

FRST.txt Teil 5:

Code:

2015-08-24 17:13 - 2014-10-29 04:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\dispdiag.exe
2015-08-24 17:13 - 2014-10-29 04:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-08-24 17:13 - 2014-10-29 04:37 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2015-08-24 17:13 - 2014-10-29 04:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2015-08-24 17:13 - 2014-10-29 04:36 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
2015-08-24 17:13 - 2014-10-29 04:36 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2015-08-24 17:13 - 2014-10-29 04:36 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2015-08-24 17:13 - 2014-10-29 04:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll
2015-08-24 17:13 - 2014-10-29 04:35 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\PlayToStatusProvider.dll
2015-08-24 17:13 - 2014-10-29 04:34 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2015-08-24 17:13 - 2014-10-29 04:34 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll
2015-08-24 17:13 - 2014-10-29 04:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2015-08-24 17:13 - 2014-10-29 04:34 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll
2015-08-24 17:13 - 2014-10-29 04:33 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\dsdmo.dll
2015-08-24 17:13 - 2014-10-29 04:33 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2015-08-24 17:13 - 2014-10-29 04:33 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\dmsynth.dll
2015-08-24 17:13 - 2014-10-29 04:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2015-08-24 17:13 - 2014-10-29 04:32 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\sdiagschd.dll
2015-08-24 17:13 - 2014-10-29 04:32 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDisplayStatusManager.dll
2015-08-24 17:13 - 2014-10-29 04:31 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\fhcleanup.dll
2015-08-24 17:13 - 2014-10-29 04:30 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\WwanRadioManager.dll
2015-08-24 17:13 - 2014-10-29 04:30 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2015-08-24 17:13 - 2014-10-29 04:29 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\WWanHC.dll
2015-08-24 17:13 - 2014-10-29 04:28 - 00177152 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codecp.acm
2015-08-24 17:13 - 2014-10-29 04:28 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\gcdef.dll
2015-08-24 17:13 - 2014-10-29 04:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\loghours.dll
2015-08-24 17:13 - 2014-10-29 04:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2015-08-24 17:13 - 2014-10-29 04:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\dssec.dll
2015-08-24 17:13 - 2014-10-29 04:26 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2015-08-24 17:13 - 2014-10-29 04:26 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-08-24 17:13 - 2014-10-29 04:26 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2015-08-24 17:13 - 2014-10-29 04:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2015-08-24 17:13 - 2014-10-29 04:25 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2015-08-24 17:13 - 2014-10-29 04:25 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\bidispl.dll
2015-08-24 17:13 - 2014-10-29 04:23 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe
2015-08-24 17:13 - 2014-10-29 04:21 - 01086464 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2015-08-24 17:13 - 2014-10-29 04:19 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2015-08-24 17:13 - 2014-10-29 04:19 - 00128512 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-08-24 17:13 - 2014-10-29 04:19 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-08-24 17:13 - 2014-10-29 04:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\ustprov.dll
2015-08-24 17:13 - 2014-10-29 04:18 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2015-08-24 17:13 - 2014-10-29 04:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2015-08-24 17:13 - 2014-10-29 04:18 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\RegCtrl.dll
2015-08-24 17:13 - 2014-10-29 04:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\SyncHost.exe
2015-08-24 17:13 - 2014-10-29 04:17 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2015-08-24 17:13 - 2014-10-29 04:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\DfsShlEx.dll
2015-08-24 17:13 - 2014-10-29 04:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\l2nacp.dll
2015-08-24 17:13 - 2014-10-29 04:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\fhtask.dll
2015-08-24 17:13 - 2014-10-29 04:17 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\ucmhc.dll
2015-08-24 17:13 - 2014-10-29 04:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2015-08-24 17:13 - 2014-10-29 04:13 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssoc.dll
2015-08-24 17:13 - 2014-10-29 04:13 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\ConnectedAccountState.dll
2015-08-24 17:13 - 2014-10-29 04:13 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-08-24 17:13 - 2014-10-29 04:12 - 00154624 _____ (Microsoft Corporation) C:\Windows\regedit.exe
2015-08-24 17:13 - 2014-10-29 04:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2015-08-24 17:13 - 2014-10-29 04:12 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\xwreg.dll
2015-08-24 17:13 - 2014-10-29 04:12 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll
2015-08-24 17:13 - 2014-10-29 04:11 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\McxDriv.dll
2015-08-24 17:13 - 2014-10-29 04:11 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2015-08-24 17:13 - 2014-10-29 04:11 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2015-08-24 17:13 - 2014-10-29 04:11 - 00053248 _____ C:\Windows\system32\BWContextHandler.dll
2015-08-24 17:13 - 2014-10-29 04:11 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\FdDevQuery.dll
2015-08-24 17:13 - 2014-10-29 04:10 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2015-08-24 17:13 - 2014-10-29 04:10 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\wshext.dll
2015-08-24 17:13 - 2014-10-29 04:10 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\frprov.dll
2015-08-24 17:13 - 2014-10-29 04:10 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2015-08-24 17:13 - 2014-10-29 04:09 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2015-08-24 17:13 - 2014-10-29 04:09 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2015-08-24 17:13 - 2014-10-29 04:09 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2015-08-24 17:13 - 2014-10-29 04:09 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\remotesp.tsp
2015-08-24 17:13 - 2014-10-29 04:09 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-08-24 17:13 - 2014-10-29 04:08 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2015-08-24 17:13 - 2014-10-29 04:07 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\EhStorPwdMgr.dll
2015-08-24 17:13 - 2014-10-29 04:07 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\MaintenanceUI.dll
2015-08-24 17:13 - 2014-10-29 04:07 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2015-08-24 17:13 - 2014-10-29 04:06 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\colorui.dll
2015-08-24 17:13 - 2014-10-29 04:06 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2015-08-24 17:13 - 2014-10-29 04:06 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\fhlisten.dll
2015-08-24 17:13 - 2014-10-29 04:06 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\DAConn.dll
2015-08-24 17:13 - 2014-10-29 04:05 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-08-24 17:13 - 2014-10-29 04:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\Dsui.dll
2015-08-24 17:13 - 2014-10-29 04:05 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\getmac.exe
2015-08-24 17:13 - 2014-10-29 04:04 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe
2015-08-24 17:13 - 2014-10-29 04:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\driverquery.exe
2015-08-24 17:13 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\SMSRouter.dll
2015-08-24 17:13 - 2014-10-29 04:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcirt.dll
2015-08-24 17:13 - 2014-10-29 04:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-08-24 17:13 - 2014-10-29 04:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2015-08-24 17:13 - 2014-10-29 04:03 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe
2015-08-24 17:13 - 2014-10-29 04:03 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2015-08-24 17:13 - 2014-10-29 04:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\signdrv.dll
2015-08-24 17:13 - 2014-10-29 04:01 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\irftp.exe
2015-08-24 17:13 - 2014-10-29 04:01 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOM.dll
2015-08-24 17:13 - 2014-10-29 04:01 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\HelpPaneProxy.dll
2015-08-24 17:13 - 2014-10-29 04:00 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
2015-08-24 17:13 - 2014-10-29 04:00 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spfileq.dll
2015-08-24 17:13 - 2014-10-29 04:00 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-08-24 17:13 - 2014-10-29 04:00 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortWindows6Compat.dll
2015-08-24 17:13 - 2014-10-29 04:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sfc_os.dll
2015-08-24 17:13 - 2014-10-29 04:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2015-08-24 17:13 - 2014-10-29 03:59 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe
2015-08-24 17:13 - 2014-10-29 03:59 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll
2015-08-24 17:13 - 2014-10-29 03:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2015-08-24 17:13 - 2014-10-29 03:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cnvfat.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmiv2.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00085504 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\makecab.exe
2015-08-24 17:13 - 2014-10-29 03:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\xmlfilter.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NapiNSP.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2015-08-24 17:13 - 2014-10-29 03:58 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-08-24 17:13 - 2014-10-29 03:57 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\TpmInit.exe
2015-08-24 17:13 - 2014-10-29 03:57 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2015-08-24 17:13 - 2014-10-29 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2015-08-24 17:13 - 2014-10-29 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cliconfg.dll
2015-08-24 17:13 - 2014-10-29 03:56 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2015-08-24 17:13 - 2014-10-29 03:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-08-24 17:13 - 2014-10-29 03:55 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\pcwutl.dll
2015-08-24 17:13 - 2014-10-29 03:54 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2015-08-24 17:13 - 2014-10-29 03:54 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\FXSUTILITY.dll
2015-08-24 17:13 - 2014-10-29 03:54 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll
2015-08-24 17:13 - 2014-10-29 03:54 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2015-08-24 17:13 - 2014-10-29 03:54 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2015-08-24 17:13 - 2014-10-29 03:54 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avicap32.dll
2015-08-24 17:13 - 2014-10-29 03:53 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2015-08-24 17:13 - 2014-10-29 03:53 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2015-08-24 17:13 - 2014-10-29 03:52 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2015-08-24 17:13 - 2014-10-29 03:52 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\FXSROUTE.dll
2015-08-24 17:13 - 2014-10-29 03:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
2015-08-24 17:13 - 2014-10-29 03:52 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToStatusProvider.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbceip.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olecli32.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasdatastore.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dxof.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprovisionsp.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe
2015-08-24 17:13 - 2014-10-29 03:51 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmloader.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\AuthExt.dll
2015-08-24 17:13 - 2014-10-29 03:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmband.dll
2015-08-24 17:13 - 2014-10-29 03:50 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-08-24 17:13 - 2014-10-29 03:50 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmsynth.dll
2015-08-24 17:13 - 2014-10-29 03:50 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax
2015-08-24 17:13 - 2014-10-29 03:50 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2015-08-24 17:13 - 2014-10-29 03:49 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll
2015-08-24 17:13 - 2014-10-29 03:49 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceDisplayStatusManager.dll
2015-08-24 17:13 - 2014-10-29 03:48 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdl32.exe
2015-08-24 17:13 - 2014-10-29 03:47 - 00186368 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codecp.acm
2015-08-24 17:13 - 2014-10-29 03:47 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-08-24 17:13 - 2014-10-29 03:47 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gcdef.dll
2015-08-24 17:13 - 2014-10-29 03:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bootcfg.exe
2015-08-24 17:13 - 2014-10-29 03:47 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\console.dll
2015-08-24 17:13 - 2014-10-29 03:47 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe
2015-08-24 17:13 - 2014-10-29 03:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\loghours.dll
2015-08-24 17:13 - 2014-10-29 03:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasads.dll
2015-08-24 17:13 - 2014-10-29 03:46 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll
2015-08-24 17:13 - 2014-10-29 03:46 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dssec.dll
2015-08-24 17:13 - 2014-10-29 03:45 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iashlpr.dll
2015-08-24 17:13 - 2014-10-29 03:45 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL
2015-08-24 17:13 - 2014-10-29 03:45 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2015-08-24 17:13 - 2014-10-29 03:45 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbui.dll
2015-08-24 17:13 - 2014-10-29 03:45 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax
2015-08-24 17:13 - 2014-10-29 03:45 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bidispl.dll
2015-08-24 17:13 - 2014-10-29 03:44 - 01152000 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2015-08-24 17:13 - 2014-10-29 03:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-08-24 17:13 - 2014-10-29 03:44 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL
2015-08-24 17:13 - 2014-10-29 03:44 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll
2015-08-24 17:13 - 2014-10-29 03:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scripto.dll
2015-08-24 17:13 - 2014-10-29 03:42 - 00305664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-08-24 17:13 - 2014-10-29 03:42 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2015-08-24 17:13 - 2014-10-29 03:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2015-08-24 17:13 - 2014-10-29 03:42 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Storprop.dll
2015-08-24 17:13 - 2014-10-29 03:41 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll
2015-08-24 17:13 - 2014-10-29 03:40 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll
2015-08-24 17:13 - 2014-10-29 03:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\docprop.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe
2015-08-24 17:13 - 2014-10-29 03:39 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgbkend.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiMigPlugin.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ustprov.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegCtrl.dll
2015-08-24 17:13 - 2014-10-29 03:39 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncHost.exe
2015-08-24 17:13 - 2014-10-29 03:38 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfhcdiscovery.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XPSSHHDR.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DfsShlEx.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2nacp.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3hc.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msident.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\playlistfolder.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucmhc.dll
2015-08-24 17:13 - 2014-10-29 03:38 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfetw.dll
2015-08-24 17:13 - 2014-10-29 03:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2015-08-24 17:13 - 2014-10-29 03:35 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
2015-08-24 17:13 - 2014-10-29 03:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwreg.dll
2015-08-24 17:13 - 2014-10-29 03:35 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2015-08-24 17:13 - 2014-10-29 03:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WABSyncProvider.dll
2015-08-24 17:13 - 2014-10-29 03:35 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConnectedAccountState.dll
2015-08-24 17:13 - 2014-10-29 03:34 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shrpubw.exe
2015-08-24 17:13 - 2014-10-29 03:34 - 00201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdminst.dll
2015-08-24 17:13 - 2014-10-29 03:34 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll
2015-08-24 17:13 - 2014-10-29 03:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptext.dll
2015-08-24 17:13 - 2014-10-29 03:34 - 00054272 _____ (Twain Working Group) C:\Windows\twain_32.dll
2015-08-24 17:13 - 2014-10-29 03:34 - 00046080 _____ C:\Windows\SysWOW64\BWContextHandler.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uireng.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotesp.tsp
2015-08-24 17:13 - 2014-10-29 03:33 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshext.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsockhc.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\btpanui.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\frprov.dll
2015-08-24 17:13 - 2014-10-29 03:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2015-08-24 17:13 - 2014-10-29 03:32 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-08-24 17:13 - 2014-10-29 03:32 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll
2015-08-24 17:13 - 2014-10-29 03:32 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoveDeviceContextHandler.dll
2015-08-24 17:13 - 2014-10-29 03:31 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2015-08-24 17:13 - 2014-10-29 03:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll
2015-08-24 17:13 - 2014-10-29 03:30 - 00605696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorui.dll
2015-08-24 17:13 - 2014-10-29 03:30 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2015-08-24 17:13 - 2014-10-29 03:30 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2015-08-24 17:13 - 2014-10-29 03:30 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiascanprofiles.dll
2015-08-24 17:13 - 2014-10-29 03:30 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndishc.dll
2015-08-24 17:13 - 2014-10-29 03:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keymgr.dll
2015-08-24 17:13 - 2014-10-29 03:29 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dsui.dll
2015-08-24 17:13 - 2014-10-29 03:29 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaacmgr.exe
2015-08-24 17:13 - 2014-10-29 03:29 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Utilman.exe
2015-08-24 17:13 - 2014-10-29 03:29 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\driverquery.exe
2015-08-24 17:13 - 2014-10-29 03:29 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2015-08-24 17:13 - 2014-10-29 03:28 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\RpcEpMap.dll
2015-08-24 17:13 - 2014-10-29 03:28 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2015-08-24 17:13 - 2014-10-29 03:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-08-24 17:13 - 2014-10-29 03:28 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\vidcap.ax
2015-08-24 17:13 - 2014-10-29 03:27 - 00700928 _____ (Microsoft Corporation) C:\Windows\system32\elslad.dll
2015-08-24 17:13 - 2014-10-29 03:27 - 00277504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe
2015-08-24 17:13 - 2014-10-29 03:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\regsvc.dll
2015-08-24 17:13 - 2014-10-29 03:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOM.dll
2015-08-24 17:13 - 2014-10-29 03:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2015-08-24 17:13 - 2014-10-29 03:27 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\net.exe
2015-08-24 17:13 - 2014-10-29 03:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2015-08-24 17:13 - 2014-10-29 03:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HelpPaneProxy.dll
2015-08-24 17:13 - 2014-10-29 03:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\signdrv.dll
2015-08-24 17:13 - 2014-10-29 03:26 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2015-08-24 17:13 - 2014-10-29 03:26 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAuthn.exe
2015-08-24 17:13 - 2014-10-29 03:26 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll
2015-08-24 17:13 - 2014-10-29 03:26 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll
2015-08-24 17:13 - 2014-10-29 03:26 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.Fontgroups.dll
2015-08-24 17:13 - 2014-10-29 03:26 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2015-08-24 17:13 - 2014-10-29 03:26 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll
2015-08-24 17:13 - 2014-10-29 03:25 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll
2015-08-24 17:13 - 2014-10-29 03:25 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2015-08-24 17:13 - 2014-10-29 03:25 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmlfilter.dll
2015-08-24 17:13 - 2014-10-29 03:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkitemfactory.dll
2015-08-24 17:13 - 2014-10-29 03:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-08-24 17:13 - 2014-10-29 03:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2015-08-24 17:13 - 2014-10-29 03:23 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll
2015-08-24 17:13 - 2014-10-29 03:22 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\wlgpclnt.dll
2015-08-24 17:13 - 2014-10-29 03:22 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll
2015-08-24 17:13 - 2014-10-29 03:22 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll
2015-08-24 17:13 - 2014-10-29 03:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2015-08-24 17:13 - 2014-10-29 03:21 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.Extensions.dll
2015-08-24 17:13 - 2014-10-29 03:20 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\L2SecHC.dll
2015-08-24 17:13 - 2014-10-29 03:20 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvvmtransport.dll
2015-08-24 17:13 - 2014-10-29 03:20 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\WlanRadioManager.dll
2015-08-24 17:13 - 2014-10-29 03:20 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\msimtf.dll
2015-08-24 17:13 - 2014-10-29 03:20 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll
2015-08-24 17:13 - 2014-10-29 03:19 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2015-08-24 17:13 - 2014-10-29 03:19 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2015-08-24 17:13 - 2014-10-29 03:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\stclient.dll
2015-08-24 17:13 - 2014-10-29 03:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\pautoenr.dll
2015-08-24 17:13 - 2014-10-29 03:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2015-08-24 17:13 - 2014-10-29 03:18 - 00184832 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-08-24 17:13 - 2014-10-29 03:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\mbussdapi.dll
2015-08-24 17:13 - 2014-10-29 03:18 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\RoamingSecurity.dll
2015-08-24 17:13 - 2014-10-29 03:17 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2015-08-24 17:13 - 2014-10-29 03:17 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2015-08-24 17:13 - 2014-10-29 03:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\umpowmi.dll
2015-08-24 17:13 - 2014-10-29 03:16 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2015-08-24 17:13 - 2014-10-29 03:16 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Pnrphc.dll
2015-08-24 17:13 - 2014-10-29 03:14 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-08-24 17:13 - 2014-10-29 03:14 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\RDSPnf.exe
2015-08-24 17:13 - 2014-10-29 03:13 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll
2015-08-24 17:13 - 2014-10-29 03:13 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2015-08-24 17:13 - 2014-10-29 03:13 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\fdPnp.dll
2015-08-24 17:13 - 2014-10-29 03:12 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceConnectApi.dll
2015-08-24 17:13 - 2014-10-29 03:11 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\DHCPQEC.DLL
2015-08-24 17:13 - 2014-10-29 03:11 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsadu.dll
2015-08-24 17:13 - 2014-10-29 03:05 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2015-08-24 17:13 - 2014-10-29 03:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2015-08-24 17:13 - 2014-10-29 03:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2015-08-24 17:13 - 2014-10-29 03:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2015-08-24 17:13 - 2014-10-29 03:05 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mskeyprotect.dll
2015-08-24 17:13 - 2014-10-29 03:04 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdsapi.dll
2015-08-24 17:13 - 2014-10-29 03:04 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netsh.exe
2015-08-24 17:13 - 2014-10-29 03:04 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\eqossnap.dll
2015-08-24 17:13 - 2014-10-29 03:04 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe
2015-08-24 17:13 - 2014-10-29 03:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2015-08-24 17:13 - 2014-10-29 03:04 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net.exe
2015-08-24 17:13 - 2014-10-29 03:04 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2015-08-24 17:13 - 2014-10-29 03:04 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\format.com
2015-08-24 17:13 - 2014-10-29 03:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2015-08-24 17:13 - 2014-10-29 03:03 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe
2015-08-24 17:13 - 2014-10-29 03:03 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecapi.dll
2015-08-24 17:13 - 2014-10-29 03:03 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll
2015-08-24 17:13 - 2014-10-29 03:03 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpkinstall.exe
2015-08-24 17:13 - 2014-10-29 03:02 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2015-08-24 17:13 - 2014-10-29 03:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll
2015-08-24 17:13 - 2014-10-29 03:02 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecutil.exe
2015-08-24 17:13 - 2014-10-29 03:02 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll
2015-08-24 17:13 - 2014-10-29 03:01 - 00383488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2015-08-24 17:13 - 2014-10-29 03:01 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlgpclnt.dll
2015-08-24 17:13 - 2014-10-29 03:01 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll
2015-08-24 17:13 - 2014-10-29 03:00 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-08-24 17:13 - 2014-10-29 03:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.dll
2015-08-24 17:13 - 2014-10-29 03:00 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\threadpoolwinrt.dll
2015-08-24 17:13 - 2014-10-29 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll
2015-08-24 17:13 - 2014-10-29 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddrawex.dll
2015-08-24 17:13 - 2014-10-29 03:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Printers.Extensions.dll
2015-08-24 17:13 - 2014-10-29 02:59 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pautoenr.dll
2015-08-24 17:13 - 2014-10-29 02:59 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stclient.dll
2015-08-24 17:13 - 2014-10-29 02:58 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EAPQEC.DLL
2015-08-24 17:13 - 2014-10-29 02:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbussdapi.dll
2015-08-24 17:13 - 2014-10-29 02:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\PSModuleDiscoveryProvider.dll
2015-08-24 17:13 - 2014-10-29 02:58 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimtf.dll
2015-08-24 17:13 - 2014-10-29 02:57 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll
2015-08-24 17:13 - 2014-10-29 02:56 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwcfg.dll
2015-08-24 17:13 - 2014-10-29 02:55 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2015-08-24 17:13 - 2014-10-29 02:55 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdPnp.dll
2015-08-24 17:13 - 2014-10-29 02:54 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2015-08-24 17:13 - 2014-10-29 02:54 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\WfHC.dll
2015-08-24 17:13 - 2014-10-29 02:54 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DHCPQEC.DLL
2015-08-24 17:13 - 2014-10-29 02:54 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceConnectApi.dll
2015-08-24 17:13 - 2014-10-29 02:51 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrscmd.dll
2015-08-24 17:13 - 2014-10-29 02:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Renewal.dll
2015-08-24 17:13 - 2014-10-29 02:46 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidfdp.dll
2015-08-24 17:13 - 2014-10-29 02:46 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingHost.exe
2015-08-24 17:13 - 2014-10-29 02:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WfHC.dll
2015-08-24 17:13 - 2014-10-15 10:32 - 00921920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2015-08-24 17:13 - 2014-10-15 10:32 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys
2015-08-24 17:12 - 2014-10-29 06:13 - 00021824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2015-08-24 17:12 - 2014-10-29 06:09 - 00108864 _____ (Microsoft Corporation) C:\Windows\system32\bootsect.exe
2015-08-24 17:12 - 2014-10-29 06:09 - 00033600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2015-08-24 17:12 - 2014-10-29 06:09 - 00033088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-08-24 17:12 - 2014-10-29 06:09 - 00033064 _____ (Microsoft Corporation) C:\Windows\system32\kernel.appcore.dll
2015-08-24 17:12 - 2014-10-29 06:09 - 00028480 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2015-08-24 17:12 - 2014-10-29 06:04 - 00080056 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-08-24 17:12 - 2014-10-29 06:04 - 00073872 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-08-24 17:12 - 2014-10-29 06:04 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2015-08-24 17:12 - 2014-10-29 06:04 - 00025352 _____ (Microsoft Corporation) C:\Windows\system32\dsrole.dll
2015-08-24 17:12 - 2014-10-29 05:59 - 00063528 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll
2015-08-24 17:12 - 2014-10-29 05:59 - 00025920 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
2015-08-24 17:12 - 2014-10-29 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-08-24 17:12 - 2014-10-29 05:57 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll
2015-08-24 17:12 - 2014-10-29 05:57 - 00031968 _____ (Microsoft Corporation) C:\Windows\system32\PasswordOnWakeSettingFlyout.exe
2015-08-24 17:12 - 2014-10-29 05:57 - 00029960 _____ (Microsoft Corporation) C:\Windows\system32\version.dll
2015-08-24 17:12 - 2014-10-29 05:57 - 00027872 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2015-08-24 17:12 - 2014-10-29 05:56 - 00097048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2015-08-24 17:12 - 2014-10-29 05:56 - 00061208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2015-08-24 17:12 - 2014-10-29 05:56 - 00049944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2015-08-24 17:12 - 2014-10-29 05:55 - 00043888 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll
2015-08-24 17:12 - 2014-10-29 05:55 - 00033576 _____ (Microsoft Corporation) C:\Windows\system32\RuntimeBroker.exe
2015-08-24 17:12 - 2014-10-29 05:53 - 00095048 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll
2015-08-24 17:12 - 2014-10-29 05:52 - 00043888 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2015-08-24 17:12 - 2014-10-29 05:52 - 00041880 _____ (Microsoft Corporation) C:\Windows\system32\msgsm32.acm
2015-08-24 17:12 - 2014-10-29 05:52 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\imaadp32.acm
2015-08-24 17:12 - 2014-10-29 05:52 - 00034088 _____ (Microsoft Corporation) C:\Windows\system32\msadp32.acm
2015-08-24 17:12 - 2014-10-29 05:52 - 00025312 _____ (Microsoft Corporation) C:\Windows\system32\msg711.acm
2015-08-24 17:12 - 2014-10-29 05:51 - 00047024 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-08-24 17:12 - 2014-10-29 05:51 - 00033032 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2015-08-24 17:12 - 2014-10-29 05:51 - 00031528 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-08-24 17:12 - 2014-10-29 05:51 - 00024800 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2015-08-24 17:12 - 2014-10-29 05:18 - 00029920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel.appcore.dll
2015-08-24 17:12 - 2014-10-29 05:12 - 00051096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll
2015-08-24 17:12 - 2014-10-29 05:11 - 00031496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avrt.dll
2015-08-24 17:12 - 2014-10-29 05:10 - 00029888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PasswordOnWakeSettingFlyout.exe
2015-08-24 17:12 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\version.dll
2015-08-24 17:12 - 2014-10-29 05:07 - 00036136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msgsm32.acm
2015-08-24 17:12 - 2014-10-29 05:07 - 00029960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imaadp32.acm
2015-08-24 17:12 - 2014-10-29 05:07 - 00028896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msadp32.acm
2015-08-24 17:12 - 2014-10-29 05:07 - 00026816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-08-24 17:12 - 2014-10-29 05:07 - 00022720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msg711.acm
2015-08-24 17:12 - 2014-10-29 05:05 - 00030984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-08-24 17:12 - 2014-10-29 05:05 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
2015-08-24 17:12 - 2014-10-29 05:05 - 00020120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
2015-08-24 17:12 - 2014-10-29 04:49 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2015-08-24 17:12 - 2014-10-29 04:48 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll
2015-08-24 17:12 - 2014-10-29 04:48 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-08-24 17:12 - 2014-10-29 04:48 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\lmhsvc.dll
2015-08-24 17:12 - 2014-10-29 04:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll
2015-08-24 17:12 - 2014-10-29 04:46 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2015-08-24 17:12 - 2014-10-29 04:46 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2015-08-24 17:12 - 2014-10-29 04:45 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2015-08-24 17:12 - 2014-10-29 04:45 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2015-08-24 17:12 - 2014-10-29 04:45 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2015-08-24 17:12 - 2014-10-29 04:45 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2015-08-24 17:12 - 2014-10-29 04:45 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wiatrace.dll
2015-08-24 17:12 - 2014-10-29 04:44 - 02022912 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2015-08-24 17:12 - 2014-10-29 04:44 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll
2015-08-24 17:12 - 2014-10-29 04:44 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2015-08-24 17:12 - 2014-10-29 04:44 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\efslsaext.dll
2015-08-24 17:12 - 2014-10-29 04:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\feclient.dll
2015-08-24 17:12 - 2014-10-29 04:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll
2015-08-24 17:12 - 2014-10-29 04:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2015-08-24 17:12 - 2014-10-29 04:43 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2015-08-24 17:12 - 2014-10-29 04:43 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\ureg.dll
2015-08-24 17:12 - 2014-10-29 04:43 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\comp.exe
2015-08-24 17:12 - 2014-10-29 04:43 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe
2015-08-24 17:12 - 2014-10-29 04:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\replace.exe
2015-08-24 17:12 - 2014-10-29 04:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2015-08-24 17:12 - 2014-10-29 04:42 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2015-08-24 17:12 - 2014-10-29 04:42 - 00082432 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codeca.acm
2015-08-24 17:12 - 2014-10-29 04:42 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2015-08-24 17:12 - 2014-10-29 04:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\drttransport.dll
2015-08-24 17:12 - 2014-10-29 04:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mcicda.dll
2015-08-24 17:12 - 2014-10-29 04:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\odbcbcp.dll
2015-08-24 17:12 - 2014-10-29 04:42 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2015-08-24 17:12 - 2014-10-29 04:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe
2015-08-24 17:12 - 2014-10-29 04:41 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2015-08-24 17:12 - 2014-10-29 04:41 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\expand.exe
2015-08-24 17:12 - 2014-10-29 04:41 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-08-24 17:12 - 2014-10-29 04:41 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\hidphone.tsp
2015-08-24 17:12 - 2014-10-29 04:41 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\serwvdrv.dll
2015-08-24 17:12 - 2014-10-29 04:40 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.ps.dll
2015-08-24 17:12 - 2014-10-29 04:40 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-08-24 17:12 - 2014-10-29 04:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\linkinfo.dll
2015-08-24 17:12 - 2014-10-29 04:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\easconsent.dll
2015-08-24 17:12 - 2014-10-29 04:38 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\dhcpsapi.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\avicap32.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\drtprov.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\MsiCofire.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2015-08-24 17:12 - 2014-10-29 04:37 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LldpNotify.dll
2015-08-24 17:12 - 2014-10-29 04:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv
2015-08-24 17:12 - 2014-10-29 04:36 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\msctfp.dll
2015-08-24 17:12 - 2014-10-29 04:36 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\PlaySndSrv.dll
2015-08-24 17:12 - 2014-10-29 04:36 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Magnification.dll
2015-08-24 17:12 - 2014-10-29 04:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\qmgrprxy.dll
2015-08-24 17:12 - 2014-10-29 04:36 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2015-08-24 17:12 - 2014-10-29 04:36 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
2015-08-24 17:12 - 2014-10-29 04:36 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2015-08-24 17:12 - 2014-10-29 04:35 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2015-08-24 17:12 - 2014-10-29 04:35 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\tcpmib.dll
2015-08-24 17:12 - 2014-10-29 04:35 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\wscisvif.dll
2015-08-24 17:12 - 2014-10-29 04:34 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-08-24 17:12 - 2014-10-29 04:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2015-08-24 17:12 - 2014-10-29 04:34 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\cttunesvr.exe
2015-08-24 17:12 - 2014-10-29 04:33 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\bthpanapi.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dswave.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2015-08-24 17:12 - 2014-10-29 04:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll
2015-08-24 17:12 - 2014-10-29 04:33 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll
2015-08-24 17:12 - 2014-10-29 04:31 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\MsCtfMonitor.dll
2015-08-24 17:12 - 2014-10-29 04:30 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-08-24 17:12 - 2014-10-29 04:30 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\RotMgr.dll
2015-08-24 17:12 - 2014-10-29 04:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe
2015-08-24 17:12 - 2014-10-29 04:29 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-08-24 17:12 - 2014-10-29 04:29 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\whoami.exe
2015-08-24 17:12 - 2014-10-29 04:29 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
2015-08-24 17:12 - 2014-10-29 04:29 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\ddodiag.exe
2015-08-24 17:12 - 2014-10-29 04:29 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\TSTheme.exe
2015-08-24 17:12 - 2014-10-29 04:28 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2015-08-24 17:12 - 2014-10-29 04:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2015-08-24 17:12 - 2014-10-29 04:27 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2015-08-24 17:12 - 2014-10-29 04:27 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe
2015-08-24 17:12 - 2014-10-29 04:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\SCardDlg.dll
2015-08-24 17:12 - 2014-10-29 04:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\vdsvd.dll
2015-08-24 17:12 - 2014-10-29 04:27 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dtsh.dll
2015-08-24 17:12 - 2014-10-29 04:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Dot3Conn.dll
2015-08-24 17:12 - 2014-10-29 04:26 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\iscsiexe.dll
2015-08-24 17:12 - 2014-10-29 04:26 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\usbui.dll
2015-08-24 17:12 - 2014-10-29 04:26 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2015-08-24 17:12 - 2014-10-29 04:26 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll
2015-08-24 17:12 - 2014-10-29 04:26 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\chkwudrv.dll
2015-08-24 17:12 - 2014-10-29 04:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2015-08-24 17:12 - 2014-10-29 04:25 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2015-08-24 17:12 - 2014-10-29 04:25 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.dll
2015-08-24 17:12 - 2014-10-29 04:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\xwizard.exe
2015-08-24 17:12 - 2014-10-29 04:24 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pwlauncher.exe
2015-08-24 17:12 - 2014-10-29 04:23 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-08-24 17:12 - 2014-10-29 04:23 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-08-24 17:12 - 2014-10-29 04:23 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-08-24 17:12 - 2014-10-29 04:23 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-08-24 17:12 - 2014-10-29 04:22 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2015-08-24 17:12 - 2014-10-29 04:22 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2015-08-24 17:12 - 2014-10-29 04:22 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\wmdmps.dll
2015-08-24 17:12 - 2014-10-29 04:22 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-08-24 17:12 - 2014-10-29 04:21 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2015-08-24 17:12 - 2014-10-29 04:20 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\modemui.dll
2015-08-24 17:12 - 2014-10-29 04:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationHost.exe
2015-08-24 17:12 - 2014-10-29 04:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2015-08-24 17:12 - 2014-10-29 04:20 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\deskadp.dll
2015-08-24 17:12 - 2014-10-29 04:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\docprop.dll
2015-08-24 17:12 - 2014-10-29 04:19 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\joy.cpl
2015-08-24 17:12 - 2014-10-29 04:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\fhautoplay.dll
2015-08-24 17:12 - 2014-10-29 04:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll
2015-08-24 17:12 - 2014-10-29 04:19 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2015-08-24 17:12 - 2014-10-29 04:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\deskmon.dll
2015-08-24 17:12 - 2014-10-29 04:19 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\wmdmlog.dll
2015-08-24 17:12 - 2014-10-29 04:19 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2015-08-24 17:12 - 2014-10-29 04:18 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWGP.dll
2015-08-24 17:12 - 2014-10-29 04:18 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2015-08-24 17:12 - 2014-10-29 04:18 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll
2015-08-24 17:12 - 2014-10-29 04:18 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\ThumbnailExtractionHost.exe
2015-08-24 17:12 - 2014-10-29 04:18 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\BthMtpContextHandler.dll
2015-08-24 17:12 - 2014-10-29 04:18 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll
2015-08-24 17:12 - 2014-10-29 04:18 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\DefaultPrinterProvider.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\fhmanagew.exe
2015-08-24 17:12 - 2014-10-29 04:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\msident.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2015-08-24 17:12 - 2014-10-29 04:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\hcproviders.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\tvratings.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wsepno.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\SmsDeviceAccessRevocation.dll
2015-08-24 17:12 - 2014-10-29 04:17 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\shpafact.dll
2015-08-24 17:12 - 2014-10-29 04:16 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\cleanmgr.exe
2015-08-24 17:12 - 2014-10-29 04:16 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\gpprnext.dll
2015-08-24 17:12 - 2014-10-29 04:16 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\pwsso.dll
2015-08-24 17:12 - 2014-10-29 04:16 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2015-08-24 17:12 - 2014-10-29 04:16 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-08-24 17:12 - 2014-10-29 04:16 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\fdWNet.dll
2015-08-24 17:12 - 2014-10-29 04:13 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe
2015-08-24 17:12 - 2014-10-29 04:12 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\shrpubw.exe
2015-08-24 17:12 - 2014-10-29 04:12 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2015-08-24 17:12 - 2014-10-29 04:11 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\uireng.dll
2015-08-24 17:12 - 2014-10-29 04:11 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2015-08-24 17:12 - 2014-10-29 04:11 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\btpanui.dll
2015-08-24 17:12 - 2014-10-29 04:11 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptext.dll
2015-08-24 17:12 - 2014-10-29 04:11 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2015-08-24 17:12 - 2014-10-29 04:10 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\tcpmonui.dll
2015-08-24 17:12 - 2014-10-29 04:10 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentHost.dll
2015-08-24 17:12 - 2014-10-29 04:09 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\MbaeXmlParser.dll
2015-08-24 17:12 - 2014-10-29 04:09 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\RemoveDeviceContextHandler.dll
2015-08-24 17:12 - 2014-10-29 04:08 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll
2015-08-24 17:12 - 2014-10-29 04:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDriverRetrievalClient.dll
2015-08-24 17:12 - 2014-10-29 04:05 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\keymgr.dll
2015-08-24 17:12 - 2014-10-29 04:04 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2015-08-24 17:12 - 2014-10-29 04:04 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\srhelper.dll
2015-08-24 17:12 - 2014-10-29 04:04 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\WSDScanProxy.dll
2015-08-24 17:12 - 2014-10-29 04:04 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe
2015-08-24 17:12 - 2014-10-29 04:03 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\SetProxyCredential.dll
2015-08-24 17:12 - 2014-10-29 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\brdgcfg.dll
2015-08-24 17:12 - 2014-10-29 04:02 - 00423424 _____ (Microsoft Corporation) C:\Windows\system32\irprops.cpl
2015-08-24 17:12 - 2014-10-29 04:02 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2015-08-24 17:12 - 2014-10-29 04:02 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\RdpSa.exe
2015-08-24 17:12 - 2014-10-29 04:01 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\cryptuiwizard.dll
2015-08-24 17:12 - 2014-10-29 04:01 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAuthn.exe
2015-08-24 17:12 - 2014-10-29 04:00 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\uicom.dll
2015-08-24 17:12 - 2014-10-29 04:00 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2015-08-24 17:12 - 2014-10-29 04:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortServer2003Compat.dll
2015-08-24 17:12 - 2014-10-29 04:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msisip.dll
2015-08-24 17:12 - 2014-10-29 04:00 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll
2015-08-24 17:12 - 2014-10-29 04:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmutil.dll
2015-08-24 17:12 - 2014-10-29 04:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 02013696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmocx.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\feclient.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\htui.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\dfp.exe
2015-08-24 17:12 - 2014-10-29 03:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hidserv.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsutil.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmpbk32.dll
2015-08-24 17:12 - 2014-10-29 03:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comp.exe
2015-08-24 17:12 - 2014-10-29 03:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fc.exe
2015-08-24 17:12 - 2014-10-29 03:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\replace.exe
2015-08-24 17:12 - 2014-10-29 03:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\doskey.exe
2015-08-24 17:12 - 2014-10-29 03:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\find.exe
2015-08-24 17:12 - 2014-10-29 03:58 - 00857088 _____ (Microsoft Corporation) C:\Windows\system32\FXSST.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00069120 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codeca.acm
2015-08-24 17:12 - 2014-10-29 03:58 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drttransport.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2015-08-24 17:12 - 2014-10-29 03:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcbcp.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcicda.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmmon32.exe
2015-08-24 17:12 - 2014-10-29 03:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mode.com
2015-08-24 17:12 - 2014-10-29 03:58 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ureg.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbnmpntw.dll
2015-08-24 17:12 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chkntfs.exe
2015-08-24 17:12 - 2014-10-29 03:58 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\convert.exe
2015-08-24 17:12 - 2014-10-29 03:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tree.com
2015-08-24 17:12 - 2014-10-29 03:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiltcfg.dll
2015-08-24 17:12 - 2014-10-29 03:57 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\expand.exe
2015-08-24 17:12 - 2014-10-29 03:57 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2015-08-24 17:12 - 2014-10-29 03:57 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hidphone.tsp
2015-08-24 17:12 - 2014-10-29 03:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2015-08-24 17:12 - 2014-10-29 03:57 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2015-08-24 17:12 - 2014-10-29 03:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2015-08-24 17:12 - 2014-10-29 03:57 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\serwvdrv.dll
2015-08-24 17:12 - 2014-10-29 03:56 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.ps.dll
2015-08-24 17:12 - 2014-10-29 03:56 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2015-08-24 17:12 - 2014-10-29 03:56 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\linkinfo.dll
2015-08-24 17:12 - 2014-10-29 03:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icmui.dll
2015-08-24 17:12 - 2014-10-29 03:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll
2015-08-24 17:12 - 2014-10-29 03:55 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pid.dll
2015-08-24 17:12 - 2014-10-29 03:54 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpsapi.dll
2015-08-24 17:12 - 2014-10-29 03:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfp.dll
2015-08-24 17:12 - 2014-10-29 03:54 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drtprov.dll
2015-08-24 17:12 - 2014-10-29 03:54 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsidsc.dll
2015-08-24 17:12 - 2014-10-29 03:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll
2015-08-24 17:12 - 2014-10-29 03:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcPing.exe
2015-08-24 17:12 - 2014-10-29 03:54 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.drv
2015-08-24 17:12 - 2014-10-29 03:53 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlaySndSrv.dll
2015-08-24 17:12 - 2014-10-29 03:53 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnification.dll
2015-08-24 17:12 - 2014-10-29 03:53 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll
2015-08-24 17:12 - 2014-10-29 03:53 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcnsh.dll
2015-08-24 17:12 - 2014-10-29 03:53 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll
2015-08-24 17:12 - 2014-10-29 03:53 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll
2015-08-24 17:12 - 2014-10-29 03:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icsunattend.exe
2015-08-24 17:12 - 2014-10-29 03:52 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3dlg.dll
2015-08-24 17:12 - 2014-10-29 03:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmutil.dll
2015-08-24 17:12 - 2014-10-29 03:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2015-08-24 17:12 - 2014-10-29 03:52 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmib.dll
2015-08-24 17:12 - 2014-10-29 03:52 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2015-08-24 17:12 - 2014-10-29 03:52 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscisvif.dll
2015-08-24 17:12 - 2014-10-29 03:52 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compact.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasphone.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msports.dll
2015-08-24 17:12 - 2014-10-29 03:51 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdrleakdiag.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\where.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialer.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olesvr32.dll
2015-08-24 17:12 - 2014-10-29 03:51 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timeout.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clip.exe
2015-08-24 17:12 - 2014-10-29 03:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dswave.dll
2015-08-24 17:12 - 2014-10-29 03:51 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshcon.dll
2015-08-24 17:12 - 2014-10-29 03:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hnetmon.dll
2015-08-24 17:12 - 2014-10-29 03:50 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cttunesvr.exe
2015-08-24 17:12 - 2014-10-29 03:50 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxsstore.dll
2015-08-24 17:12 - 2014-10-29 03:49 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2015-08-24 17:12 - 2014-10-29 03:49 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2015-08-24 17:12 - 2014-10-29 03:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutilext.dll
2015-08-24 17:12 - 2014-10-29 03:49 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2015-08-24 17:12 - 2014-10-29 03:48 - 01497600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcopy.dll
2015-08-24 17:12 - 2014-10-29 03:48 - 00466944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl
2015-08-24 17:12 - 2014-10-29 03:48 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\NcaSvc.dll
2015-08-24 17:12 - 2014-10-29 03:48 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\whoami.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\forfiles.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sfc.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcreate.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\waitfor.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\choice.exe
2015-08-24 17:12 - 2014-10-29 03:48 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsCtfMonitor.dll
2015-08-24 17:12 - 2014-10-29 03:47 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2015-08-24 17:12 - 2014-10-29 03:47 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSTheme.exe
2015-08-24 17:12 - 2014-10-29 03:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddodiag.exe
2015-08-24 17:12 - 2014-10-29 03:46 - 00088064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2015-08-24 17:12 - 2014-10-29 03:46 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SCardDlg.dll
2015-08-24 17:12 - 2014-10-29 03:46 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmci.dll
2015-08-24 17:12 - 2014-10-29 03:46 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtsh.dll
2015-08-24 17:12 - 2014-10-29 03:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.dll
2015-08-24 17:12 - 2014-10-29 03:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cipher.exe
2015-08-24 17:12 - 2014-10-29 03:45 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmiprop.dll
2015-08-24 17:12 - 2014-10-29 03:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmcfg32.dll
2015-08-24 17:12 - 2014-10-29 03:43 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwizard.exe
2015-08-24 17:12 - 2014-10-29 03:43 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2015-08-24 17:12 - 2014-10-29 03:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2015-08-24 17:12 - 2014-10-29 03:43 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2015-08-24 17:12 - 2014-10-29 03:43 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AtBroker.exe
2015-08-24 17:12 - 2014-10-29 03:43 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2015-08-24 17:12 - 2014-10-29 03:42 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\radarrs.dll
2015-08-24 17:12 - 2014-10-29 03:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2015-08-24 17:12 - 2014-10-29 03:40 - 00136704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\joy.cpl
2015-08-24 17:12 - 2014-10-29 03:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
2015-08-24 17:12 - 2014-10-29 03:40 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deskadp.dll
2015-08-24 17:12 - 2014-10-29 03:40 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhsetup.dll
2015-08-24 17:12 - 2014-10-29 03:40 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdmlog.dll
2015-08-24 17:12 - 2014-10-29 03:40 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shutdown.exe
2015-08-24 17:12 - 2014-10-29 03:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe
2015-08-24 17:12 - 2014-10-29 03:39 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWGP.dll
2015-08-24 17:12 - 2014-10-29 03:39 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll
2015-08-24 17:12 - 2014-10-29 03:39 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deskmon.dll
2015-08-24 17:12 - 2014-10-29 03:39 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2015-08-24 17:12 - 2014-10-29 03:39 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ThumbnailExtractionHost.exe
2015-08-24 17:12 - 2014-10-29 03:39 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dvdupgrd.exe
2015-08-24 17:12 - 2014-10-29 03:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcdProp.dll
2015-08-24 17:12 - 2014-10-29 03:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DefaultPrinterProvider.dll
2015-08-24 17:12 - 2014-10-29 03:39 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2015-08-24 17:12 - 2014-10-29 03:38 - 00232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hdwwiz.cpl
2015-08-24 17:12 - 2014-10-29 03:38 - 00212480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe
2015-08-24 17:12 - 2014-10-29 03:38 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\efsadu.dll
2015-08-24 17:12 - 2014-10-29 03:38 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmlua.dll
2015-08-24 17:12 - 2014-10-29 03:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe
2015-08-24 17:12 - 2014-10-29 03:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hcproviders.dll
2015-08-24 17:12 - 2014-10-29 03:38 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
2015-08-24 17:12 - 2014-10-29 03:38 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tvratings.dll
2015-08-24 17:12 - 2014-10-29 03:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shpafact.dll
2015-08-24 17:12 - 2014-10-29 03:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprnext.dll
2015-08-24 17:12 - 2014-10-29 03:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-08-24 17:12 - 2014-10-29 03:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2015-08-24 17:12 - 2014-10-29 03:36 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWNet.dll
2015-08-24 17:12 - 2014-10-29 03:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2015-08-24 17:12 - 2014-10-29 03:34 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FdDevQuery.dll
2015-08-24 17:12 - 2014-10-29 03:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll
2015-08-24 17:12 - 2014-10-29 03:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\unregmp2.exe
2015-08-24 17:12 - 2014-10-29 03:31 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorPwdMgr.dll
2015-08-24 17:12 - 2014-10-29 03:31 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credwiz.exe
2015-08-24 17:12 - 2014-10-29 03:30 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe
2015-08-24 17:12 - 2014-10-29 03:29 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-08-24 17:12 - 2014-10-29 03:29 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00258560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2015-08-24 17:12 - 2014-10-29 03:28 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\mspatchc.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\mskeyprotect.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\scext.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\hid.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSa.exe
2015-08-24 17:12 - 2014-10-29 03:28 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\w32topl.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinFax.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2015-08-24 17:12 - 2014-10-29 03:28 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2015-08-24 17:12 - 2014-10-29 03:27 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\irprops.cpl
2015-08-24 17:12 - 2014-10-29 03:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\netsh.exe
2015-08-24 17:12 - 2014-10-29 03:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-08-24 17:12 - 2014-10-29 03:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2015-08-24 17:12 - 2014-10-29 03:27 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\perfos.dll
2015-08-24 17:12 - 2014-10-29 03:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\format.com
2015-08-24 17:12 - 2014-10-29 03:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2015-08-24 17:12 - 2014-10-29 03:27 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\more.com
2015-08-24 17:12 - 2014-10-29 03:26 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\ntdsapi.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\pnrpnsp.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2015-08-24 17:12 - 2014-10-29 03:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-08-24 17:12 - 2014-10-29 03:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wlidnsp.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\srumapi.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSEXT32.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\NetEvtFwdr.exe
2015-08-24 17:12 - 2014-10-29 03:26 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\MirrorDrvCompat.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uicom.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\XInput1_4.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\eapprovp.dll
2015-08-24 17:12 - 2014-10-29 03:26 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\chkdsk.exe
2015-08-24 17:12 - 2014-10-29 03:26 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll
2015-08-24 17:12 - 2014-10-29 03:25 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\DevDispItemProvider.dll
2015-08-24 17:12 - 2014-10-29 03:25 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtffilt.dll
2015-08-24 17:12 - 2014-10-29 03:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2015-08-24 17:12 - 2014-10-29 03:25 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-08-24 17:12 - 2014-10-29 03:24 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wlanext.exe
2015-08-24 17:12 - 2014-10-29 03:24 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-08-24 17:12 - 2014-10-29 03:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguageProfileCallback.dll
2015-08-24 17:12 - 2014-10-29 03:23 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.ps.dll
2015-08-24 17:12 - 2014-10-29 03:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2015-08-24 17:12 - 2014-10-29 03:22 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\cngcredui.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Portable.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\cfmifs.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe
2015-08-24 17:12 - 2014-10-29 03:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Display.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2015-08-24 17:12 - 2014-10-29 03:21 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.RemoteDesktop.dll
2015-08-24 17:12 - 2014-10-29 03:20 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2015-08-24 17:12 - 2014-10-29 03:20 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\dimsjob.dll
2015-08-24 17:12 - 2014-10-29 03:20 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll
2015-08-24 17:12 - 2014-10-29 03:19 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\rasmbmgr.dll
2015-08-24 17:12 - 2014-10-29 03:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2015-08-24 17:12 - 2014-10-29 03:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\sxshared.dll
2015-08-24 17:12 - 2014-10-29 03:18 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
2015-08-24 17:12 - 2014-10-29 03:18 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2015-08-24 17:12 - 2014-10-29 03:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2015-08-24 17:12 - 2014-10-29 03:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll
2015-08-24 17:12 - 2014-10-29 03:15 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\FDResPub.dll
2015-08-24 17:12 - 2014-10-29 03:14 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\certCredProvider.dll
2015-08-24 17:12 - 2014-10-29 03:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\ProximityServicePal.dll
2015-08-24 17:12 - 2014-10-29 03:12 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\msdtc.exe
2015-08-24 17:12 - 2014-10-29 03:06 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-08-24 17:12 - 2014-10-29 03:06 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmiclnt.dll
2015-08-24 17:12 - 2014-10-29 03:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll
2015-08-24 17:12 - 2014-10-29 03:06 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elslad.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\winrscmd.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspatchc.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\reg.exe
2015-08-24 17:12 - 2014-10-29 03:05 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sc.exe
2015-08-24 17:12 - 2014-10-29 03:05 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\ndiscapCfg.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lodctr.exe
2015-08-24 17:12 - 2014-10-29 03:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfscli.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspatcha.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfos.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfdisk.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshhttp.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vidcap.ax
2015-08-24 17:12 - 2014-10-29 03:05 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icacls.exe
2015-08-24 17:12 - 2014-10-29 03:05 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32topl.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\snmpapi.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hid.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\more.com
2015-08-24 17:12 - 2014-10-29 03:05 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe
2015-08-24 17:12 - 2014-10-29 03:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsparse.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll
2015-08-24 17:12 - 2014-10-29 03:05 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\attrib.exe
2015-08-24 17:12 - 2014-10-29 03:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnrpnsp.dll
2015-08-24 17:12 - 2014-10-29 03:04 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentprf.dll
2015-08-24 17:12 - 2014-10-29 03:04 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-08-24 17:12 - 2014-10-29 03:04 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setx.exe
2015-08-24 17:12 - 2014-10-29 03:04 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2015-08-24 17:12 - 2014-10-29 03:04 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SecEdit.exe
2015-08-24 17:12 - 2014-10-29 03:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumapi.dll
2015-08-24 17:12 - 2014-10-29 03:04 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2015-08-24 17:12 - 2014-10-29 03:04 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe
2015-08-24 17:12 - 2014-10-29 03:04 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cacls.exe
2015-08-24 17:12 - 2014-10-29 03:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapprovp.dll
2015-08-24 17:12 - 2014-10-29 03:03 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.Fontgroups.dll
2015-08-24 17:12 - 2014-10-29 03:03 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MirrorDrvCompat.dll
2015-08-24 17:12 - 2014-10-29 03:03 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypttpmeksvc.dll
2015-08-24 17:12 - 2014-10-29 03:03 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput1_4.dll
2015-08-24 17:12 - 2014-10-29 03:03 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbrand.dll
2015-08-24 17:12 - 2014-10-29 03:03 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chkdsk.exe
2015-08-24 17:12 - 2014-10-29 03:02 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanext.exe
2015-08-24 17:12 - 2014-10-29 03:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2015-08-24 17:12 - 2014-10-29 03:02 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2015-08-24 17:12 - 2014-10-29 03:01 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll
2015-08-24 17:12 - 2014-10-29 03:01 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguageProfileCallback.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngcredui.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfctrs.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Portable.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NETSTAT.EXE
2015-08-24 17:12 - 2014-10-29 03:00 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipconfig.exe
2015-08-24 17:12 - 2014-10-29 03:00 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsjob.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxlegih.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfmifs.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll


Wandalensalz 28.08.2015 15:20

FRST.txt Teil 6:

Code:

2015-08-24 17:12 - 2014-10-29 03:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxdm.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Display.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.SystemManufacturers.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll
2015-08-24 17:12 - 2014-10-29 03:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.RemoteDesktop.dll
2015-08-24 17:12 - 2014-10-29 02:59 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll
2015-08-24 17:12 - 2014-10-29 02:59 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2015-08-24 17:12 - 2014-10-29 02:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2015-08-24 17:12 - 2014-10-29 02:58 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2015-08-24 17:12 - 2014-10-29 02:58 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll
2015-08-24 17:12 - 2014-10-29 02:58 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2015-08-24 17:12 - 2014-10-29 02:57 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\NcdAutoSetup.dll
2015-08-24 17:12 - 2014-10-29 02:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll
2015-08-24 17:12 - 2014-10-29 02:57 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll
2015-08-24 17:12 - 2014-10-29 02:57 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\datusage.dll
2015-08-24 17:12 - 2014-10-29 02:57 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2015-08-24 17:12 - 2014-10-29 02:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrshost.exe
2015-08-24 17:12 - 2014-10-29 02:56 - 00337920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certCredProvider.dll
2015-08-24 17:12 - 2014-10-29 02:56 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2015-08-24 17:12 - 2014-10-29 02:56 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll
2015-08-24 17:12 - 2014-10-29 02:53 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\WSDPrintProxy.DLL
2015-08-24 17:12 - 2014-10-29 02:53 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-08-24 17:12 - 2014-10-29 02:53 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifmon.dll
2015-08-24 17:12 - 2014-10-29 02:52 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrs.exe
2015-08-24 17:12 - 2014-10-29 02:51 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndiscapCfg.dll
2015-08-24 17:12 - 2014-10-29 02:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2015-08-24 17:12 - 2014-10-29 02:47 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3gpclnt.dll
2015-08-24 17:12 - 2014-10-29 02:46 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PSModuleDiscoveryProvider.dll
2015-08-24 17:12 - 2014-10-29 02:46 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ByteCodeGenerator.exe
2015-08-24 17:12 - 2014-10-29 02:45 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll
2015-08-24 17:12 - 2014-10-29 02:44 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CheckNetIsolation.exe
2015-08-24 17:12 - 2014-10-29 02:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaProxy.exe
2015-08-24 17:12 - 2014-10-29 02:43 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-08-24 17:12 - 2014-10-29 02:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2015-08-24 17:12 - 2014-10-29 02:35 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2015-08-24 17:12 - 2014-10-07 08:44 - 00069952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2015-08-24 17:11 - 2014-10-29 04:46 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys
2015-08-24 17:11 - 2014-10-29 04:46 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-08-24 17:11 - 2014-10-29 04:46 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-08-24 17:11 - 2014-10-29 04:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2015-08-24 17:11 - 2014-10-29 04:45 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2015-08-24 17:11 - 2014-10-29 04:45 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\netbios.dll
2015-08-24 17:11 - 2014-10-29 04:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\SensApi.dll
2015-08-24 17:11 - 2014-10-29 04:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2015-08-24 17:11 - 2014-10-29 04:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\regidle.dll
2015-08-24 17:11 - 2014-10-29 04:45 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\oleacchooks.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\fthsvc.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\SortServer2003Compat.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\htui.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\efsutil.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\winrnr.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\blb_ps.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\davhlpr.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\irmon.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\mgmtapi.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\clb.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sas.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\WlS0WndH.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\nddeapi.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\XInput9_1_0.dll
2015-08-24 17:11 - 2014-10-29 04:44 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\telephon.cpl
2015-08-24 17:11 - 2014-10-29 04:43 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2015-08-24 17:11 - 2014-10-29 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\dbnmpntw.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msiltcfg.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\doskey.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\find.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\print.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\label.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\subst.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\diskcomp.com
2015-08-24 17:11 - 2014-10-29 04:43 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2015-08-24 17:11 - 2014-10-29 04:43 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\recover.exe
2015-08-24 17:11 - 2014-10-29 04:43 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\diskcopy.com
2015-08-24 17:11 - 2014-10-29 04:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tapiperf.dll
2015-08-24 17:11 - 2014-10-29 04:43 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\acledit.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\hwrcomp.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\efssvc.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\klist.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\drprov.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wephostsvc.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL
2015-08-24 17:11 - 2014-10-29 04:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\pcacli.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\midimap.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\umdmxfrm.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\chkntfs.exe
2015-08-24 17:11 - 2014-10-29 04:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\ifsutilx.dll
2015-08-24 17:11 - 2014-10-29 04:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\IconCodecService.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\cliconfg.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\dmintf.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\dxpps.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2015-08-24 17:11 - 2014-10-29 04:41 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaPs.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\SyncHostps.dll
2015-08-24 17:11 - 2014-10-29 04:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wmcodecdspps.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2015-08-24 17:11 - 2014-10-29 04:40 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\SyncInfrastructureps.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx5.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\TSChannel.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx7.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx6.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx3.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx4.dll
2015-08-24 17:11 - 2014-10-29 04:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\VmApplicationHealthMonitorProxy.dll
2015-08-24 17:11 - 2014-10-29 04:39 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2015-08-24 17:11 - 2014-10-29 04:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\ksetup.exe
2015-08-24 17:11 - 2014-10-29 04:39 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\icmui.dll
2015-08-24 17:11 - 2014-10-29 04:38 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2015-08-24 17:11 - 2014-10-29 04:38 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\pid.dll
2015-08-24 17:11 - 2014-10-29 04:38 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe
2015-08-24 17:11 - 2014-10-29 04:37 - 15789568 _____ (Microsoft Corporation) C:\Windows\system32\DDORes.dll
2015-08-24 17:11 - 2014-10-29 04:37 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2015-08-24 17:11 - 2014-10-29 04:37 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2015-08-24 17:11 - 2014-10-29 04:37 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe
2015-08-24 17:11 - 2014-10-29 04:37 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\VscMgrPS.dll
2015-08-24 17:11 - 2014-10-29 04:36 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\iscsidsc.dll
2015-08-24 17:11 - 2014-10-29 04:36 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2015-08-24 17:11 - 2014-10-29 04:36 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2015-08-24 17:11 - 2014-10-29 04:36 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\rpcnsh.dll
2015-08-24 17:11 - 2014-10-29 04:36 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx2.dll
2015-08-24 17:11 - 2014-10-29 04:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\verclsid.exe
2015-08-24 17:11 - 2014-10-29 04:35 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2015-08-24 17:11 - 2014-10-29 04:35 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UI0Detect.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\at.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\uniplat.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\regsvr32.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\kernelceip.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2015-08-24 17:11 - 2014-10-29 04:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcmonitor.dll
2015-08-24 17:11 - 2014-10-29 04:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\cmdext.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\ndadmin.exe
2015-08-24 17:11 - 2014-10-29 04:33 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\NetVscCoinstall.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2015-08-24 17:11 - 2014-10-29 04:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\msports.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\MemoryDiagnostic.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\winusb.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdiagnhost.exe
2015-08-24 17:11 - 2014-10-29 04:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe
2015-08-24 17:11 - 2014-10-29 04:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pstask.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\svsvc.dll
2015-08-24 17:11 - 2014-10-29 04:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\LAPRXY.DLL
2015-08-24 17:11 - 2014-10-29 04:32 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2015-08-24 17:11 - 2014-10-29 04:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\CHxReadingStringIME.dll
2015-08-24 17:11 - 2014-10-29 04:31 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\fsutilext.dll
2015-08-24 17:11 - 2014-10-29 04:31 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll
2015-08-24 17:11 - 2014-10-29 04:31 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2015-08-24 17:11 - 2014-10-29 04:30 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe
2015-08-24 17:11 - 2014-10-29 04:30 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\pnppolicy.dll
2015-08-24 17:11 - 2014-10-29 04:30 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\dfdts.dll
2015-08-24 17:11 - 2014-10-29 04:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2015-08-24 17:11 - 2014-10-29 04:29 - 01502720 _____ (Microsoft Corporation) C:\Windows\system32\diskcopy.dll
2015-08-24 17:11 - 2014-10-29 04:29 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2015-08-24 17:11 - 2014-10-29 04:29 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\console.dll
2015-08-24 17:11 - 2014-10-29 04:29 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe
2015-08-24 17:11 - 2014-10-29 04:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\tapilua.dll
2015-08-24 17:11 - 2014-10-29 04:29 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\setspn.exe
2015-08-24 17:11 - 2014-10-29 04:29 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll
2015-08-24 17:11 - 2014-10-29 04:29 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\wshelper.dll
2015-08-24 17:11 - 2014-10-29 04:28 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\bootcfg.exe
2015-08-24 17:11 - 2014-10-29 04:28 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2015-08-24 17:11 - 2014-10-29 04:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll
2015-08-24 17:11 - 2014-10-29 04:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mmci.dll
2015-08-24 17:11 - 2014-10-29 04:27 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll
2015-08-24 17:11 - 2014-10-29 04:26 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cipher.exe
2015-08-24 17:11 - 2014-10-29 04:26 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\BthSQM.dll
2015-08-24 17:11 - 2014-10-29 04:25 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\fontview.exe
2015-08-24 17:11 - 2014-10-29 04:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\napipsec.dll
2015-08-24 17:11 - 2014-10-29 04:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.exe
2015-08-24 17:11 - 2014-10-29 04:24 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll
2015-08-24 17:11 - 2014-10-29 04:24 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\NcaApi.dll
2015-08-24 17:11 - 2014-10-29 04:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pcwrun.exe
2015-08-24 17:11 - 2014-10-29 04:23 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\dispci.dll
2015-08-24 17:11 - 2014-10-29 04:23 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\montr_ci.dll
2015-08-24 17:11 - 2014-10-29 04:22 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\newdev.exe
2015-08-24 17:11 - 2014-10-29 04:22 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\radarrs.dll
2015-08-24 17:11 - 2014-10-29 04:22 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Storprop.dll
2015-08-24 17:11 - 2014-10-29 04:22 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll
2015-08-24 17:11 - 2014-10-29 04:22 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\ndproxystub.dll
2015-08-24 17:11 - 2014-10-29 04:22 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\dxgwdi.dll
2015-08-24 17:11 - 2014-10-29 04:20 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\iscsicpl.dll
2015-08-24 17:11 - 2014-10-29 04:20 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2015-08-24 17:11 - 2014-10-29 04:20 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\shutdown.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\control.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Eap3Host.exe
2015-08-24 17:11 - 2014-10-29 04:19 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\DefaultDeviceManager.dll
2015-08-24 17:11 - 2014-10-29 04:18 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\MdRes.exe
2015-08-24 17:11 - 2014-10-29 04:18 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2015-08-24 17:11 - 2014-10-29 04:18 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\dvdupgrd.exe
2015-08-24 17:11 - 2014-10-29 04:18 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\grpconv.exe
2015-08-24 17:11 - 2014-10-29 04:17 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.cpl
2015-08-24 17:11 - 2014-10-29 04:17 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2015-08-24 17:11 - 2014-10-29 04:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2015-08-24 17:11 - 2014-10-29 04:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2015-08-24 17:11 - 2014-10-29 04:17 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2015-08-24 17:11 - 2014-10-29 04:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\aecache.dll
2015-08-24 17:11 - 2014-10-29 04:17 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-08-24 17:11 - 2014-10-29 04:17 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll
2015-08-24 17:11 - 2014-10-29 04:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\DDACLSys.dll
2015-08-24 17:11 - 2014-10-29 04:17 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RemoveDeviceElevated.dll
2015-08-24 17:11 - 2014-10-29 04:12 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll
2015-08-24 17:11 - 2014-10-29 04:11 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\mdminst.dll
2015-08-24 17:11 - 2014-10-29 04:10 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\srwmi.dll
2015-08-24 17:11 - 2014-10-29 04:09 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\hotplug.dll
2015-08-24 17:11 - 2014-10-29 04:09 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\ntlanui2.dll
2015-08-24 17:11 - 2014-10-29 04:08 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\DFDWiz.exe
2015-08-24 17:11 - 2014-10-29 04:08 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2015-08-24 17:11 - 2014-10-29 04:02 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll
2015-08-24 17:11 - 2014-10-29 04:02 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\WinFax.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dramp.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miguiresource.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\tpmcompc.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortWindows61.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\idndl.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Nlsdl.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciwave.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davhlpr.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscpxl32.dLL
2015-08-24 17:11 - 2014-10-29 04:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiatrace.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbios.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscat32.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensApi.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\softpub.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacchooks.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nddeapi.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiwer.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssip32.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_32.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_32.ax
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OskSupport.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_qcx.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_qc.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_qcx.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_qc.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir32_32.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\getuname.dll
2015-08-24 17:11 - 2014-10-29 04:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osuninst.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2015-08-24 17:11 - 2014-10-29 03:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regini.exe
2015-08-24 17:11 - 2014-10-29 03:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrnr.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mgmtapi.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdmdbg.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsock32.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clb.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\subst.exe
2015-08-24 17:11 - 2014-10-29 03:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\print.exe
2015-08-24 17:11 - 2014-10-29 03:59 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlS0WndH.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sas.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput9_1_0.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2015-08-24 17:11 - 2014-10-29 03:59 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxex.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\telephon.cpl
2015-08-24 17:11 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2015-08-24 17:11 - 2014-10-29 03:58 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.exe
2015-08-24 17:11 - 2014-10-29 03:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2015-08-24 17:11 - 2014-10-29 03:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drprov.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sort.exe
2015-08-24 17:11 - 2014-10-29 03:58 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osbaseln.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\umdmxfrm.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\midimap.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WINSRPC.DLL
2015-08-24 17:11 - 2014-10-29 03:58 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasctrs.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcomp.com
2015-08-24 17:11 - 2014-10-29 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\label.exe
2015-08-24 17:11 - 2014-10-29 03:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwinsat.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\recover.exe
2015-08-24 17:11 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chcp.com
2015-08-24 17:11 - 2014-10-29 03:58 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcopy.com
2015-08-24 17:11 - 2014-10-29 03:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsied.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapiperf.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeDateMUICallback.dll
2015-08-24 17:11 - 2014-10-29 03:58 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acledit.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syskey.exe
2015-08-24 17:11 - 2014-10-29 03:57 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmintf.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcacli.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmlprovi.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpupdate.exe
2015-08-24 17:11 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcmsetup.exe
2015-08-24 17:11 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\panmap.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutilx.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbperf.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaPs.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcico.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IconCodecService.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spnet.dll
2015-08-24 17:11 - 2014-10-29 03:57 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shfolder.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx5.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capisp.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncInfrastructureps.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\irclass.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dispex.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSChannel.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx6.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscproxystub.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx7.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx3.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncHostps.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx4.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmcodecdspps.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcji32.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odtext32.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odpdx32.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odfox32.dll
2015-08-24 17:11 - 2014-10-29 03:56 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odexl32.dll
2015-08-24 17:11 - 2014-10-29 03:55 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2015-08-24 17:11 - 2014-10-29 03:55 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfime.ime
2015-08-24 17:11 - 2014-10-29 03:54 - 15784448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDORes.dll
2015-08-24 17:11 - 2014-10-29 03:54 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2015-08-24 17:11 - 2014-10-29 03:54 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\extrac32.exe
2015-08-24 17:11 - 2014-10-29 03:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secinit.exe
2015-08-24 17:11 - 2014-10-29 03:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VscMgrPS.dll
2015-08-24 17:11 - 2014-10-29 03:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qmgrprxy.dll
2015-08-24 17:11 - 2014-10-29 03:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ktmutil.exe
2015-08-24 17:11 - 2014-10-29 03:53 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx2.dll
2015-08-24 17:11 - 2014-10-29 03:53 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verclsid.exe
2015-08-24 17:11 - 2014-10-29 03:52 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll
2015-08-24 17:11 - 2014-10-29 03:52 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventvwr.exe
2015-08-24 17:11 - 2014-10-29 03:52 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hdwwiz.exe
2015-08-24 17:11 - 2014-10-29 03:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2015-08-24 17:11 - 2014-10-29 03:52 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe
2015-08-24 17:11 - 2014-10-29 03:52 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdext.dll
2015-08-24 17:11 - 2014-10-29 03:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiSysprep.dll
2015-08-24 17:11 - 2014-10-29 03:51 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndadmin.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\at.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winusb.dll
2015-08-24 17:11 - 2014-10-29 03:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorSvc.dll
2015-08-24 17:11 - 2014-10-29 03:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runas.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uniplat.dll
2015-08-24 17:11 - 2014-10-29 03:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdial.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasautou.exe
2015-08-24 17:11 - 2014-10-29 03:51 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcmonitor.dll
2015-08-24 17:11 - 2014-10-29 03:51 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LAPRXY.DLL
2015-08-24 17:11 - 2014-10-29 03:50 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Apphlpdm.dll
2015-08-24 17:11 - 2014-10-29 03:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiagnhost.exe
2015-08-24 17:11 - 2014-10-29 03:49 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingProxy.dll
2015-08-24 17:11 - 2014-10-29 03:49 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlaninst.dll
2015-08-24 17:11 - 2014-10-29 03:49 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2015-08-24 17:11 - 2014-10-29 03:49 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2015-08-24 17:11 - 2014-10-29 03:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CHxReadingStringIME.dll
2015-08-24 17:11 - 2014-10-29 03:48 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshelper.dll
2015-08-24 17:11 - 2014-10-29 03:48 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RmClient.exe
2015-08-24 17:11 - 2014-10-29 03:47 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2015-08-24 17:11 - 2014-10-29 03:46 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\serialui.dll
2015-08-24 17:11 - 2014-10-29 03:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napipsec.dll
2015-08-24 17:11 - 2014-10-29 03:44 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.exe
2015-08-24 17:11 - 2014-10-29 03:44 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontview.exe
2015-08-24 17:11 - 2014-10-29 03:44 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Narrator.exe
2015-08-24 17:11 - 2014-10-29 03:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcaApi.dll
2015-08-24 17:11 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe
2015-08-24 17:11 - 2014-10-29 03:42 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.exe
2015-08-24 17:11 - 2014-10-29 03:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdmps.dll
2015-08-24 17:11 - 2014-10-29 03:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndproxystub.dll
2015-08-24 17:11 - 2014-10-29 03:40 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2015-08-24 17:11 - 2014-10-29 03:40 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingWizard.exe
2015-08-24 17:11 - 2014-10-29 03:40 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DefaultDeviceManager.dll
2015-08-24 17:11 - 2014-10-29 03:39 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\control.exe
2015-08-24 17:11 - 2014-10-29 03:39 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Fondue.exe
2015-08-24 17:11 - 2014-10-29 03:38 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2015-08-24 17:11 - 2014-10-29 03:38 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe
2015-08-24 17:11 - 2014-10-29 03:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\grpconv.exe
2015-08-24 17:11 - 2014-10-29 03:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstplua.dll
2015-08-24 17:11 - 2014-10-29 03:38 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDACLSys.dll
2015-08-24 17:11 - 2014-10-29 03:38 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoveDeviceElevated.dll
2015-08-24 17:11 - 2014-10-29 03:34 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsui.exe
2015-08-24 17:11 - 2014-10-29 03:32 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanui2.dll
2015-08-24 17:11 - 2014-10-29 03:32 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-08-24 17:11 - 2014-10-29 03:29 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-08-24 17:11 - 2014-10-29 03:29 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\wmiclnt.dll
2015-08-24 17:11 - 2014-10-29 03:29 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gptext.dll
2015-08-24 17:11 - 2014-10-29 03:29 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\FileAppxStreamingDataSource.dll
2015-08-24 17:11 - 2014-10-29 03:29 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\dpapi.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\KdsCli.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\sc.exe
2015-08-24 17:11 - 2014-10-29 03:28 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\dfscli.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe
2015-08-24 17:11 - 2014-10-29 03:28 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\snmpapi.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2015-08-24 17:11 - 2014-10-29 03:28 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerClient.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\attrib.exe
2015-08-24 17:11 - 2014-10-29 03:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\fltLib.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\mskeyprotcli.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\PATHPING.EXE
2015-08-24 17:11 - 2014-10-29 03:28 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\wmsgapi.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\sscoreext.dll
2015-08-24 17:11 - 2014-10-29 03:28 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msidle.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\loadperf.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2015-08-24 17:11 - 2014-10-29 03:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\esentprf.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\setx.exe
2015-08-24 17:11 - 2014-10-29 03:27 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\SecEdit.exe
2015-08-24 17:11 - 2014-10-29 03:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\virtdisk.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wcmapi.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\dsparse.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\sysntfy.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\fvecerts.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\ARP.EXE
2015-08-24 17:11 - 2014-10-29 03:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerClient.dll
2015-08-24 17:11 - 2014-10-29 03:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Register-CimProvider.exe
2015-08-24 17:11 - 2014-10-29 03:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2015-08-24 17:11 - 2014-10-29 03:26 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\crypttpmeksvc.dll
2015-08-24 17:11 - 2014-10-29 03:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2015-08-24 17:11 - 2014-10-29 03:26 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll
2015-08-24 17:11 - 2014-10-29 03:26 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2015-08-24 17:11 - 2014-10-29 03:26 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2015-08-24 17:11 - 2014-10-29 03:26 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\userinitext.dll
2015-08-24 17:11 - 2014-10-29 03:25 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2015-08-24 17:11 - 2014-10-29 03:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\winlogonext.dll
2015-08-24 17:11 - 2014-10-29 03:25 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tpmcompc.dll
2015-08-24 17:11 - 2014-10-29 03:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\ncuprov.dll
2015-08-24 17:11 - 2014-10-29 03:25 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\wininitext.dll
2015-08-24 17:11 - 2014-10-29 03:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dnsext.dll
2015-08-24 17:11 - 2014-10-29 03:23 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll
2015-08-24 17:11 - 2014-10-29 03:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.ps.dll
2015-08-24 17:11 - 2014-10-29 03:22 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll
2015-08-24 17:11 - 2014-10-29 03:22 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2015-08-24 17:11 - 2014-10-29 03:22 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\TaskSchdPS.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\catsrvps.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\perfctrs.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe
2015-08-24 17:11 - 2014-10-29 03:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\wpnsruprov.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\defragproxy.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\AuthHostProxy.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\TtlsExt.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\TimeSyncTask.dll
2015-08-24 17:11 - 2014-10-29 03:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\cfmifsproxy.dll
2015-08-24 17:11 - 2014-10-29 03:20 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapimig.exe
2015-08-24 17:11 - 2014-10-29 03:20 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\NETSTAT.EXE
2015-08-24 17:11 - 2014-10-29 03:20 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommonPal.dll
2015-08-24 17:11 - 2014-10-29 03:20 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentTask.dll
2015-08-24 17:11 - 2014-10-29 03:20 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll
2015-08-24 17:11 - 2014-10-29 03:19 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\pnrpauto.dll
2015-08-24 17:11 - 2014-10-29 03:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WofTasks.dll
2015-08-24 17:11 - 2014-10-29 03:16 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2015-08-24 17:11 - 2014-10-29 03:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2015-08-24 17:11 - 2014-10-29 03:15 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe
2015-08-24 17:11 - 2014-10-29 03:14 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2015-08-24 17:11 - 2014-10-29 03:12 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wwaninst.dll
2015-08-24 17:11 - 2014-10-29 03:11 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2015-08-24 17:11 - 2014-10-29 03:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll
2015-08-24 17:11 - 2014-10-29 03:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\winrs.exe
2015-08-24 17:11 - 2014-10-29 03:06 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapi.dll
2015-08-24 17:11 - 2014-10-29 03:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprext.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_G18030.DLL
2015-08-24 17:11 - 2014-10-29 03:05 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprmsg.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe
2015-08-24 17:11 - 2014-10-29 03:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\virtdisk.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcsubs.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfnet.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
2015-08-24 17:11 - 2014-10-29 03:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mskeyprotcli.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fltLib.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeBrokerClient.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PATHPING.EXE
2015-08-24 17:11 - 2014-10-29 03:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mountvol.exe
2015-08-24 17:11 - 2014-10-29 03:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemEventsBrokerClient.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmsgapi.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\finger.exe
2015-08-24 17:11 - 2014-10-29 03:05 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasadhlp.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\whhelper.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_IS2022.DLL
2015-08-24 17:11 - 2014-10-29 03:05 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrssrv.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBthProxy.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msidle.dll
2015-08-24 17:11 - 2014-10-29 03:05 - 00006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe
2015-08-24 17:11 - 2014-10-29 03:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pots.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcmapi.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fltMC.exe
2015-08-24 17:11 - 2014-10-29 03:04 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ARP.EXE


Wandalensalz 28.08.2015 15:23

FRST.txt Teil 7:

Code:

2015-08-24 17:11 - 2014-10-29 03:04 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinitext.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Register-CimProvider.exe
2015-08-24 17:11 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll
2015-08-24 17:11 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HOSTNAME.EXE
2015-08-24 17:11 - 2014-10-29 03:04 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpcsvc.dll
2015-08-24 17:11 - 2014-10-29 03:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidnsp.dll
2015-08-24 17:11 - 2014-10-29 03:03 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MRINFO.EXE
2015-08-24 17:11 - 2014-10-29 03:03 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityRtapiPal.dll
2015-08-24 17:11 - 2014-10-29 03:02 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2015-08-24 17:11 - 2014-10-29 03:02 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininitext.dll
2015-08-24 17:11 - 2014-10-29 03:01 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TaskSchdPS.dll
2015-08-24 17:11 - 2014-10-29 03:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vss_ps.dll
2015-08-24 17:11 - 2014-10-29 03:01 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\slpts.dll
2015-08-24 17:11 - 2014-10-29 03:00 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundTransferHost.exe
2015-08-24 17:11 - 2014-10-29 03:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvps.dll
2015-08-24 17:11 - 2014-10-29 03:00 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ROUTE.EXE
2015-08-24 17:11 - 2014-10-29 03:00 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll
2015-08-24 17:11 - 2014-10-29 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsExt.dll
2015-08-24 17:11 - 2014-10-29 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommonPal.dll
2015-08-24 17:11 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfmifsproxy.dll
2015-08-24 17:11 - 2014-10-29 02:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschapext.dll
2015-08-24 17:11 - 2014-10-29 02:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
2015-08-24 17:11 - 2014-10-29 02:58 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll
2015-08-24 17:11 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxshared.dll
2015-08-24 17:11 - 2014-10-29 02:57 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2015-08-24 17:11 - 2014-10-29 02:57 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll
2015-08-24 17:11 - 2014-10-29 02:56 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll
2015-08-24 17:11 - 2014-10-29 02:55 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\CheckNetIsolation.exe
2015-08-24 17:11 - 2014-10-29 02:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaProxy.exe
2015-08-24 17:11 - 2014-10-29 02:54 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaUacHelper.exe
2015-08-24 17:11 - 2014-10-29 02:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollCtrl.exe
2015-08-24 17:11 - 2014-10-29 02:48 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slpts.dll
2015-08-24 17:11 - 2014-10-29 02:46 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Startupscan.dll
2015-08-24 17:11 - 2014-10-29 02:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaUacHelper.exe
2015-08-24 17:11 - 2014-06-21 09:33 - 00212736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-08-24 17:10 - 2014-10-29 05:54 - 05120000 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2015-08-24 17:10 - 2014-10-29 05:54 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWWizFwk.dll
2015-08-24 17:10 - 2014-10-29 05:07 - 05120000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll
2015-08-24 17:10 - 2014-10-29 05:07 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWWizFwk.dll
2015-08-24 17:10 - 2014-10-29 04:50 - 02628608 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0009.dll
2015-08-24 17:10 - 2014-10-29 04:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUxRes.dll
2015-08-24 17:10 - 2014-10-29 04:49 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-08-24 17:10 - 2014-10-29 04:49 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl
2015-08-24 17:10 - 2014-10-29 04:49 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ws2help.dll
2015-08-24 17:10 - 2014-10-29 04:49 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\rnr20.dll
2015-08-24 17:10 - 2014-10-29 04:48 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-08-24 17:10 - 2014-10-29 04:48 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\ktmw32.dll
2015-08-24 17:10 - 2014-10-29 04:48 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys
2015-08-24 17:10 - 2014-10-29 04:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\WSHTCPIP.DLL
2015-08-24 17:10 - 2014-10-29 04:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wship6.dll
2015-08-24 17:10 - 2014-10-29 04:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\txfw32.dll
2015-08-24 17:10 - 2014-10-29 04:48 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys
2015-08-24 17:10 - 2014-10-29 04:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Locator.exe
2015-08-24 17:10 - 2014-10-29 04:48 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-08-24 17:10 - 2014-10-29 04:47 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-08-24 17:10 - 2014-10-29 04:47 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2015-08-24 17:10 - 2014-10-29 04:47 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys
2015-08-24 17:10 - 2014-10-29 04:47 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2015-08-24 17:10 - 2014-10-29 04:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys
2015-08-24 17:10 - 2014-10-29 04:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2015-08-24 17:10 - 2014-10-29 04:46 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2015-08-24 17:10 - 2014-10-29 04:45 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\miguiresource.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-08-24 17:10 - 2014-10-29 04:45 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys
2015-08-24 17:10 - 2014-10-29 04:45 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows6Compat.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys
2015-08-24 17:10 - 2014-10-29 04:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows61.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mciwave.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\AutoWorkplaceN.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\osuninst.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-08-24 17:10 - 2014-10-29 04:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-08-24 17:10 - 2014-10-29 04:45 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\normaliz.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\MSchedExe.exe
2015-08-24 17:10 - 2014-10-29 04:44 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\regini.exe
2015-08-24 17:10 - 2014-10-29 04:44 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msidcrl40.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msiwer.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\mscat32.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\softpub.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\OskSupport.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\getuname.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\mtxex.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\mssip32.dll
2015-08-24 17:10 - 2014-10-29 04:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sort.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\hh.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\cmdkey.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\dvdplay.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iscsied.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\help.exe
2015-08-24 17:10 - 2014-10-29 04:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spmpm.dll
2015-08-24 17:10 - 2014-10-29 04:43 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\colorcpl.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\DDOIProxy.dll
2015-08-24 17:10 - 2014-10-29 04:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\syskey.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cliconfg.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2015-08-24 17:10 - 2014-10-29 04:42 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\snmptrap.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TapiUnattend.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2015-08-24 17:10 - 2014-10-29 04:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll
2015-08-24 17:10 - 2014-10-29 04:42 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\dcomcnfg.exe
2015-08-24 17:10 - 2014-10-29 04:42 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\RpcNs4.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2015-08-24 17:10 - 2014-10-29 04:41 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\gpupdate.exe
2015-08-24 17:10 - 2014-10-29 04:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-08-24 17:10 - 2014-10-29 04:41 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\tcmsetup.exe
2015-08-24 17:10 - 2014-10-29 04:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\mmcico.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\panmap.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\scrnsave.scr
2015-08-24 17:10 - 2014-10-29 04:41 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\spnet.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\CIRCoInst.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\shfolder.dll
2015-08-24 17:10 - 2014-10-29 04:41 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2015-08-24 17:10 - 2014-10-29 04:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\sccls.dll
2015-08-24 17:10 - 2014-10-29 04:40 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.proxystub.dll
2015-08-24 17:10 - 2014-10-29 04:40 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\irclass.dll
2015-08-24 17:10 - 2014-10-29 04:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-08-24 17:10 - 2014-10-29 04:38 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\capisp.dll
2015-08-24 17:10 - 2014-10-29 04:38 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pstorec.dll
2015-08-24 17:10 - 2014-10-29 04:38 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\msctfime.ime
2015-08-24 17:10 - 2014-10-29 04:37 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\secinit.exe
2015-08-24 17:10 - 2014-10-29 04:37 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\ctfmon.exe
2015-08-24 17:10 - 2014-10-29 04:36 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe
2015-08-24 17:10 - 2014-10-29 04:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe
2015-08-24 17:10 - 2014-10-29 04:36 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\acproxy.dll
2015-08-24 17:10 - 2014-10-29 04:35 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\iscsicpl.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\eventvwr.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\winver.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\where.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dialer.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\timeout.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\clip.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\cofire.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\fsavailux.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TapiSysprep.dll
2015-08-24 17:10 - 2014-10-29 04:34 - 00011264 _____ (Microsoft Corporation) C:\Windows\write.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\write.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\regedt32.exe
2015-08-24 17:10 - 2014-10-29 04:34 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\systray.exe
2015-08-24 17:10 - 2014-10-29 04:33 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Apphlpdm.dll
2015-08-24 17:10 - 2014-10-29 04:33 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\runas.exe
2015-08-24 17:10 - 2014-10-29 04:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe
2015-08-24 17:10 - 2014-10-29 04:31 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\wlaninst.dll
2015-08-24 17:10 - 2014-10-29 04:30 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\sigverif.exe
2015-08-24 17:10 - 2014-10-29 04:30 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\forfiles.exe
2015-08-24 17:10 - 2014-10-29 04:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\eventcreate.exe
2015-08-24 17:10 - 2014-10-29 04:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2015-08-24 17:10 - 2014-10-29 04:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\RmClient.exe
2015-08-24 17:10 - 2014-10-29 04:29 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2015-08-24 17:10 - 2014-10-29 04:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe
2015-08-24 17:10 - 2014-10-29 04:28 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\odbcad32.exe
2015-08-24 17:10 - 2014-10-29 04:25 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\hwrreg.exe
2015-08-24 17:10 - 2014-10-29 04:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe
2015-08-24 17:10 - 2014-10-29 04:25 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2015-08-24 17:10 - 2014-10-29 04:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\LocationNotifications.exe
2015-08-24 17:10 - 2014-10-29 04:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizardElev.exe
2015-08-24 17:10 - 2014-10-29 04:23 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\wowreg32.exe
2015-08-24 17:10 - 2014-10-29 04:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-08-24 17:10 - 2014-10-29 04:20 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2015-08-24 17:10 - 2014-10-29 04:20 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\WallpaperHost.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\DeviceProperties.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesRemote.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesProtection.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesPerformance.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesHardware.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesDataExecutionPrevention.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesComputerName.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesAdvanced.exe
2015-08-24 17:10 - 2014-10-29 04:19 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Netplwiz.exe
2015-08-24 17:10 - 2014-10-29 04:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\SmartScreenSettings.exe
2015-08-24 17:10 - 2014-10-29 04:18 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\OptionalFeatures.exe
2015-08-24 17:10 - 2014-10-29 04:18 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Fondue.exe
2015-08-24 17:10 - 2014-10-29 04:18 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\DpiScaling.exe
2015-08-24 17:10 - 2014-10-29 04:18 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\RunLegacyCPLElevated.exe
2015-08-24 17:10 - 2014-10-29 04:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe
2015-08-24 17:10 - 2014-10-29 04:17 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe
2015-08-24 17:10 - 2014-10-29 04:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\efsui.exe
2015-08-24 17:10 - 2014-10-29 04:09 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe
2015-08-24 17:10 - 2014-10-29 04:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\credwiz.exe
2015-08-24 17:10 - 2014-10-29 04:08 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-08-24 17:10 - 2014-10-29 04:05 - 02628608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsLexicons0009.dll
2015-08-24 17:10 - 2014-10-29 04:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\gptext.dll
2015-08-24 17:10 - 2014-10-29 04:04 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2015-08-24 17:10 - 2014-10-29 04:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceUxRes.dll
2015-08-24 17:10 - 2014-10-29 04:04 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2015-08-24 17:10 - 2014-10-29 04:04 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2help.dll
2015-08-24 17:10 - 2014-10-29 04:04 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rnr20.dll
2015-08-24 17:10 - 2014-10-29 04:03 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-08-24 17:10 - 2014-10-29 04:03 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ktmw32.dll
2015-08-24 17:10 - 2014-10-29 04:03 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\txfw32.dll
2015-08-24 17:10 - 2014-10-29 04:03 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wship6.dll
2015-08-24 17:10 - 2014-10-29 04:03 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSHTCPIP.DLL
2015-08-24 17:10 - 2014-10-29 04:03 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2015-08-24 17:10 - 2014-10-29 04:00 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll
2015-08-24 17:10 - 2014-10-29 04:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciseq.dll
2015-08-24 17:10 - 2014-10-29 04:00 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-08-24 17:10 - 2014-10-29 04:00 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-08-24 17:10 - 2014-10-29 04:00 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\normaliz.dll
2015-08-24 17:10 - 2014-10-29 04:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprop.dll
2015-08-24 17:10 - 2014-10-29 03:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msidcrl40.dll
2015-08-24 17:10 - 2014-10-29 03:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\help.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorcpl.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cliconfg.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hh.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdkey.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiUnattend.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dvdplay.exe
2015-08-24 17:10 - 2014-10-29 03:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomcnfg.exe
2015-08-24 17:10 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDOIProxy.dll
2015-08-24 17:10 - 2014-10-29 03:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrnsave.scr
2015-08-24 17:10 - 2014-10-29 03:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcNs4.dll
2015-08-24 17:10 - 2014-10-29 03:56 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pstorec.dll
2015-08-24 17:10 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oddbse32.dll
2015-08-24 17:10 - 2014-10-29 03:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ctfmon.exe
2015-08-24 17:10 - 2014-10-29 03:53 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\dpapimig.exe
2015-08-24 17:10 - 2014-10-29 03:53 - 00009728 _____ (Microsoft Corporation) C:\Windows\winhlp32.exe
2015-08-24 17:10 - 2014-10-29 03:52 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.exe
2015-08-24 17:10 - 2014-10-29 03:52 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe
2015-08-24 17:10 - 2014-10-29 03:52 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winver.exe
2015-08-24 17:10 - 2014-10-29 03:52 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedt32.exe
2015-08-24 17:10 - 2014-10-29 03:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\write.exe
2015-08-24 17:10 - 2014-10-29 03:51 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InfDefaultInstall.exe
2015-08-24 17:10 - 2014-10-29 03:51 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systray.exe
2015-08-24 17:10 - 2014-10-29 03:46 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcad32.exe
2015-08-24 17:10 - 2014-10-29 03:45 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resmon.exe
2015-08-24 17:10 - 2014-10-29 03:45 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2015-08-24 17:10 - 2014-10-29 03:44 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationNotifications.exe
2015-08-24 17:10 - 2014-10-29 03:40 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Netplwiz.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartScreenSettings.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceProperties.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesRemote.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesProtection.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesPerformance.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesHardware.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesDataExecutionPrevention.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesComputerName.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesAdvanced.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DpiScaling.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RunLegacyCPLElevated.exe
2015-08-24 17:10 - 2014-10-29 03:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe
2015-08-24 17:10 - 2014-10-29 03:32 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthudtask.exe
2015-08-24 17:10 - 2014-10-29 03:29 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mprext.dll
2015-08-24 17:10 - 2014-10-29 03:29 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\dabapi.dll
2015-08-24 17:10 - 2014-10-29 03:29 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2015-08-24 17:10 - 2014-10-29 03:28 - 00224768 _____ (Microsoft Corporation) C:\Windows\system32\C_G18030.DLL
2015-08-24 17:10 - 2014-10-29 03:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\mprmsg.dll
2015-08-24 17:10 - 2014-10-29 03:28 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe
2015-08-24 17:10 - 2014-10-29 03:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\sdhcinst.dll
2015-08-24 17:10 - 2014-10-29 03:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe
2015-08-24 17:10 - 2014-10-29 03:28 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2015-08-24 17:10 - 2014-10-29 03:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\whhelper.dll
2015-08-24 17:10 - 2014-10-29 03:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TCPSVCS.EXE
2015-08-24 17:10 - 2014-10-29 03:28 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\TcpipSetup.dll
2015-08-24 17:10 - 2014-10-29 03:28 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\backgroundTaskHost.exe
2015-08-24 17:10 - 2014-10-29 03:28 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2015-08-24 17:10 - 2014-10-29 03:27 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe
2015-08-24 17:10 - 2014-10-29 03:27 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2015-08-24 17:10 - 2014-10-29 03:27 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe
2015-08-24 17:10 - 2014-10-29 03:27 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\fltMC.exe
2015-08-24 17:10 - 2014-10-29 03:27 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE
2015-08-24 17:10 - 2014-10-29 03:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\TRACERT.EXE
2015-08-24 17:10 - 2014-10-29 03:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe
2015-08-24 17:10 - 2014-10-29 03:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\HOSTNAME.EXE
2015-08-24 17:10 - 2014-10-29 03:27 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TetheringIeProvider.dll
2015-08-24 17:10 - 2014-10-29 03:26 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\VaultCmd.exe
2015-08-24 17:10 - 2014-10-29 03:26 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\MRINFO.EXE
2015-08-24 17:10 - 2014-10-29 03:26 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ProximityRtapiPal.dll
2015-08-24 17:10 - 2014-10-29 03:26 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wpcsvc.dll
2015-08-24 17:10 - 2014-10-29 03:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\procinst.dll
2015-08-24 17:10 - 2014-10-29 03:23 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2015-08-24 17:10 - 2014-10-29 03:23 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\AppxStreamingDataSourcePS.dll
2015-08-24 17:10 - 2014-10-29 03:21 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\CallButtons.ProxyStub.dll
2015-08-24 17:10 - 2014-10-29 03:21 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\ROUTE.EXE
2015-08-24 17:10 - 2014-10-29 03:21 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dllhst3g.exe
2015-08-24 17:10 - 2014-10-29 03:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\raschapext.dll
2015-08-24 17:10 - 2014-10-29 03:19 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
2015-08-24 17:10 - 2014-10-29 03:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\DsmUserTask.exe
2015-08-24 17:10 - 2014-10-29 03:06 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL
2015-08-24 17:10 - 2014-10-29 03:06 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dabapi.dll
2015-08-24 17:10 - 2014-10-29 03:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRACERT.EXE
2015-08-24 17:10 - 2014-10-29 03:05 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TCPSVCS.EXE
2015-08-24 17:10 - 2014-10-29 03:05 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe
2015-08-24 17:10 - 2014-10-29 03:03 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2015-08-24 17:10 - 2014-10-29 03:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdProxy.dll
2015-08-24 17:10 - 2014-10-29 03:01 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.ps.dll
2015-08-24 17:10 - 2014-10-29 03:01 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2015-08-24 17:10 - 2014-10-29 03:01 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.ps.dll
2015-08-24 17:10 - 2014-10-29 03:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallButtons.ProxyStub.dll
2015-08-24 17:10 - 2014-10-29 02:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Startupscan.dll
2015-08-24 17:10 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\bootim.exe
2015-08-24 17:10 - 2014-10-29 02:50 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2015-08-24 17:10 - 2014-05-03 01:26 - 00050745 _____ C:\Windows\system32\srms.dat
2015-08-24 16:55 - 2015-08-27 16:17 - 00000000 ____D C:\FRST
2015-08-24 16:54 - 2015-08-27 16:17 - 02186752 _____ (Farbar) C:\Users\Name\Desktop\FRST64.exe
2015-08-24 16:49 - 2015-07-05 12:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-08-24 16:49 - 2014-10-31 06:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-08-24 16:48 - 2014-10-31 07:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-08-24 16:48 - 2014-10-31 07:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-08-24 16:48 - 2014-10-31 07:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-08-24 16:48 - 2014-10-31 07:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-08-24 16:48 - 2014-10-31 07:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-08-24 16:48 - 2014-10-31 07:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-08-24 16:48 - 2014-10-31 07:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-08-24 16:48 - 2014-10-31 07:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-08-24 16:48 - 2014-10-31 06:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-24 16:48 - 2014-10-31 06:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-08-24 16:48 - 2014-10-31 06:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-08-24 16:48 - 2014-10-31 06:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2015-08-24 16:48 - 2014-10-31 06:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-24 16:48 - 2014-10-31 06:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-08-24 16:48 - 2014-10-31 06:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-08-24 16:48 - 2014-10-31 06:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-08-24 16:48 - 2014-10-31 06:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-08-24 16:48 - 2014-10-31 06:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-08-24 16:48 - 2014-10-31 05:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-08-24 16:48 - 2014-10-31 05:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-08-24 16:48 - 2014-10-31 05:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-08-24 16:48 - 2014-10-31 05:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-08-24 16:48 - 2014-10-31 05:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-08-24 16:48 - 2014-10-31 05:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-08-24 16:48 - 2014-10-31 05:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-08-24 16:48 - 2014-10-31 05:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-08-24 16:48 - 2014-10-31 05:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-08-24 16:48 - 2014-10-31 05:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-08-24 16:48 - 2014-10-31 05:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-08-24 16:48 - 2014-10-31 05:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-08-24 16:48 - 2014-10-31 05:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2015-08-24 16:48 - 2014-10-31 05:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-08-24 16:48 - 2014-10-31 05:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-08-24 16:48 - 2014-10-31 04:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-08-24 16:48 - 2014-10-31 04:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-08-24 16:48 - 2014-10-31 04:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-08-24 16:48 - 2014-10-31 04:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-08-24 16:48 - 2014-10-31 04:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-08-24 16:48 - 2014-10-31 04:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-08-24 16:46 - 2014-12-19 08:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-08-24 16:45 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-08-24 16:44 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-08-24 16:44 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-08-24 16:44 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-08-24 16:44 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-08-24 16:44 - 2014-10-29 04:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-08-24 16:44 - 2014-10-29 04:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-08-24 16:44 - 2014-10-29 03:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2015-08-24 16:44 - 2014-10-29 03:38 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2015-08-24 16:44 - 2014-10-29 03:26 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-08-24 16:44 - 2014-10-29 03:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-08-24 16:44 - 2014-10-29 03:04 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2015-08-24 16:44 - 2014-10-29 03:04 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2015-08-24 16:43 - 2015-07-13 21:46 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-24 16:43 - 2015-07-13 21:45 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-24 16:43 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-24 16:43 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-08-24 16:43 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-08-24 16:43 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-08-24 16:43 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2015-08-24 16:43 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-08-24 16:43 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-08-24 16:43 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-08-24 16:43 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-08-24 16:43 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-08-24 16:43 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-08-24 16:43 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-08-24 16:43 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-08-24 16:42 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-24 16:42 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-08-24 16:42 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-08-24 16:42 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-24 16:42 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-08-24 16:42 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-24 16:42 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-08-24 16:42 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-08-24 16:42 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-08-24 16:42 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-08-24 16:42 - 2014-10-29 04:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-08-24 16:42 - 2014-10-29 03:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-08-24 16:42 - 2014-10-29 03:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\EventAggregation.dll
2015-08-24 16:42 - 2014-10-29 03:27 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll
2015-08-24 16:42 - 2014-10-29 03:12 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-08-24 16:36 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-08-24 16:36 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-08-24 16:34 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\SysWOW64\locale.nls
2015-08-24 16:34 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\system32\locale.nls
2015-08-24 16:33 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-08-24 16:33 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-08-24 16:33 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-08-24 16:33 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-08-24 16:33 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-08-24 16:33 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-08-24 16:33 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-08-24 16:33 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-08-24 16:33 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-08-24 16:33 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-08-24 16:33 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-08-24 16:33 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-08-24 16:33 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-08-24 16:33 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-08-24 16:33 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-08-24 16:33 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-08-24 16:33 - 2014-10-29 04:24 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2015-08-24 16:33 - 2014-10-29 04:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2015-08-24 16:33 - 2014-10-29 03:43 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2015-08-24 16:33 - 2014-10-29 03:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2015-08-24 16:33 - 2014-10-29 03:20 - 00238592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2015-08-24 16:33 - 2014-10-29 02:57 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2015-08-24 16:33 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2015-08-24 16:33 - 2014-10-29 02:56 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-08-24 16:33 - 2014-10-29 02:46 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2015-08-24 16:33 - 2014-10-29 02:45 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2015-08-24 16:33 - 2014-10-29 02:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2015-08-24 16:32 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-08-24 16:32 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-08-24 16:32 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-08-24 16:32 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-08-24 16:31 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-08-24 16:31 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-24 16:31 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-08-24 16:31 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-08-24 16:31 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-08-24 16:31 - 2015-03-13 06:03 - 00239424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-08-24 16:31 - 2015-03-13 06:03 - 00154432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-08-24 16:30 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-24 16:30 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-24 16:30 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-24 16:30 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-08-24 16:30 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-08-24 16:30 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-08-24 16:30 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-08-24 16:30 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-08-24 16:30 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-08-24 16:30 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-08-24 16:30 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2015-08-24 16:30 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-08-24 16:30 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-08-24 16:30 - 2014-10-29 05:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-08-24 16:30 - 2014-10-29 04:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-08-24 16:30 - 2014-10-29 04:48 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\workerdd.dll
2015-08-24 16:30 - 2014-10-29 04:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-08-24 16:30 - 2014-10-29 04:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-08-24 16:30 - 2014-10-29 04:42 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-08-24 16:30 - 2014-10-29 04:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-08-24 16:30 - 2014-10-29 04:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-08-24 16:30 - 2014-10-29 04:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-08-24 16:30 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-08-24 16:30 - 2014-10-29 03:19 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-08-24 16:30 - 2014-10-29 02:59 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2015-08-24 16:29 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-08-24 16:29 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-08-24 16:29 - 2014-06-02 04:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-08-24 16:28 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-08-24 16:28 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-08-24 16:28 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-08-24 16:28 - 2014-10-29 04:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-08-24 16:28 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-08-24 16:28 - 2014-10-29 04:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-08-24 16:27 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-08-24 16:27 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-08-24 16:27 - 2014-10-29 03:58 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\WPDShextAutoplay.exe
2015-08-24 16:27 - 2014-10-29 03:54 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2015-08-24 16:27 - 2014-10-29 03:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShextAutoplay.exe
2015-08-24 16:27 - 2014-10-29 03:22 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll
2015-08-24 16:25 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-08-24 16:25 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-08-24 16:25 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-08-24 16:25 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-08-24 16:24 - 2014-12-06 05:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-08-24 16:24 - 2014-12-06 03:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-08-24 16:23 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-08-24 16:23 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-08-24 16:23 - 2014-10-29 03:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-08-24 16:23 - 2014-10-29 03:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-08-24 16:20 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-08-24 16:20 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-08-24 16:20 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-08-24 16:20 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-08-24 16:20 - 2014-10-13 04:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-08-24 16:20 - 2014-10-13 04:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-08-24 16:18 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-08-24 15:15 - 2015-08-25 14:10 - 00000000 ____D C:\Users\Name\VirtualBox VMs
2015-08-24 15:13 - 2015-08-25 17:39 - 00000000 ____D C:\Users\Name\.VirtualBox
2015-08-24 15:12 - 2015-08-24 15:12 - 00001096 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2015-08-24 15:12 - 2015-08-24 15:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2015-08-24 15:12 - 2015-08-13 18:24 - 00960808 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2015-08-24 15:12 - 2015-08-13 18:24 - 00138904 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2015-08-24 11:45 - 2015-08-24 11:45 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-08-24 11:45 - 2015-08-24 11:45 - 00000000 ____D C:\Users\Name\AppData\Roaming\Sun
2015-08-24 11:45 - 2015-08-24 11:45 - 00000000 ____D C:\Users\Name\.oracle_jre_usage
2015-08-24 11:45 - 2015-08-24 11:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-24 11:44 - 2015-08-24 11:44 - 00000000 ____D C:\ProgramData\Oracle
2015-08-24 11:44 - 2015-08-24 11:44 - 00000000 ____D C:\Program Files (x86)\Java
2015-08-24 11:40 - 2015-08-24 11:46 - 00000000 ____D C:\Users\Name\AppData\Local\Mozilla
2015-08-24 11:40 - 2015-08-24 11:40 - 00000000 ____D C:\Users\Name\AppData\Roaming\Mozilla
2015-08-24 11:39 - 2015-08-24 11:39 - 00000000 ____D C:\Users\Name\AppData\Roaming\java
2015-08-24 11:38 - 2015-08-25 17:37 - 00000000 ____D C:\Users\Name\AppData\Roaming\.minecraft
2015-08-24 11:37 - 2015-08-27 16:18 - 00000000 __RDO C:\Users\Name\OneDrive
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\Users\Name\AppData\Roaming\ATI
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\Users\Name\AppData\Local\ATI
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\Users\Name\AppData\Local\AMD
2015-08-24 11:37 - 2015-08-24 11:37 - 00000000 ____D C:\ProgramData\ATI
2015-08-23 19:55 - 2015-08-25 13:15 - 00000000 ____D C:\Program Files (x86)\Firefox Developer Edition
2015-08-23 19:53 - 2015-08-25 18:07 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{82BBDC4A-A9BF-4DD8-91B6-CACB6C1E52A6}
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 __SHD C:\Users\Name\AppData\Local\EmieUserList
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 __SHD C:\Users\Name\AppData\Local\EmieSiteList
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\Documents\xls
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\Documents\Virtual Machines
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\Documents\CryEngine
2015-08-23 19:53 - 2015-08-23 19:53 - 00000000 ____D C:\Users\Name\AppData\Roaming\Macromedia
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\Tasm 1.4
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\servlets+jsp
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\Program Files\Wireshark
2015-08-23 19:52 - 2015-08-23 19:52 - 00000000 ____D C:\Program Files\WinPcap
2015-08-23 19:51 - 2015-08-23 19:51 - 00060817 _____ C:\Windows\SysWOW64\CCCInstall_201508231951554722.log
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\ProgramData\AMD
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\Program Files\Oracle
2015-08-23 19:51 - 2015-08-23 19:51 - 00000000 ____D C:\Program Files\ATI Technologies
2015-08-23 19:50 - 2015-08-23 19:51 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-08-23 19:50 - 2015-08-23 19:50 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-23 19:50 - 2015-08-23 19:50 - 00000000 ____D C:\Program Files\Common Files\VMware
2015-08-23 19:50 - 2015-08-23 19:50 - 00000000 ____D C:\Program Files\Common Files\Borland Shared
2015-08-23 19:49 - 2015-08-23 19:49 - 00000000 ____D C:\AMD
2015-08-23 19:49 - 2015-08-23 19:49 - 00000000 _____ C:\Windows\system32\spu_storage.bin
2015-08-23 19:49 - 2015-08-23 19:49 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-08-23 19:48 - 2015-08-23 19:49 - 00000000 ____D C:\Program Files (x86)\Webocton - Scriptly
2015-08-23 19:48 - 2015-08-23 19:48 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-08-23 19:48 - 2015-08-23 19:48 - 00000000 ____D C:\Program Files\AMD
2015-08-23 19:47 - 2015-08-25 12:03 - 00003104 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1401523435-2182861310-3413026540-1001
2015-08-23 19:47 - 2015-08-24 11:37 - 00000000 ___RD C:\Users\Name\OneDrive.old
2015-08-23 19:47 - 2015-08-23 19:48 - 00000000 ____D C:\Program Files (x86)\WinRAR
2015-08-23 19:46 - 2015-08-23 19:46 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-23 19:46 - 2015-08-23 19:46 - 00000000 ____D C:\Program Files (x86)\VMware
2015-08-23 19:45 - 2015-08-23 19:45 - 00000000 ____D C:\Program Files (x86)\System Explorer
2015-08-23 19:45 - 2015-08-23 19:45 - 00000000 ____D C:\Program Files (x86)\Minecraft
2015-08-23 19:42 - 2015-08-23 19:42 - 00000000 __SHD C:\Recovery
2015-08-23 19:42 - 2015-08-23 19:42 - 00000000 ____D C:\Program Files (x86)\7-Zip
2015-08-23 19:42 - 2015-08-23 19:42 - 00000000 _____ C:\Recovery.txt
2015-08-23 19:39 - 2015-08-23 19:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-08-23 19:36 - 2015-08-23 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-08-23 19:35 - 2015-08-27 16:21 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1401523435-2182861310-3413026540-1001
2015-08-23 19:35 - 2015-08-23 19:35 - 00047104 ___SH C:\Users\Name\Desktop\Thumbs.db
2015-08-23 19:35 - 2015-08-23 19:35 - 00001181 _____ C:\Users\Name\Desktop\MyStuff.lnk
2015-08-23 19:34 - 2015-08-23 19:34 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-08-23 19:33 - 2015-08-23 19:56 - 00000000 ____D C:\Users\Name\MyStuff
2015-08-23 19:33 - 2015-08-23 19:33 - 00000000 ____D C:\Assembler
2015-08-23 19:31 - 2015-08-23 19:31 - 00000000 ____D C:\Users\Name\AppData\Local\GWX
2015-08-23 19:23 - 2015-08-23 19:25 - 00000000 ____D C:\Users\Name\AppData\Local\PackageStaging
2015-08-23 19:23 - 2015-08-23 19:23 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-08-23 19:22 - 2015-08-25 18:11 - 00000000 ____D C:\Users\Name\AppData\Local\Packages
2015-08-23 19:22 - 2015-08-23 19:22 - 00001458 _____ C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-23 19:22 - 2015-08-23 19:22 - 00000000 ____D C:\Users\Name\AppData\Roaming\Adobe
2015-08-23 19:22 - 2015-08-23 19:22 - 00000000 ____D C:\Users\Name\AppData\Local\VirtualStore
2015-08-23 19:21 - 2015-08-23 19:23 - 00000000 ___SD C:\Windows\system32\GWX
2015-08-23 19:21 - 2015-08-23 19:21 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-08-23 19:20 - 2015-08-25 16:00 - 00000000 ____D C:\Users\Name
2015-08-23 19:20 - 2015-08-23 19:20 - 00000020 ___SH C:\Users\Name\ntuser.ini
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Vorlagen
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Startmenü
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Netzwerkumgebung
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Lokale Einstellungen
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Eigene Dateien
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Druckumgebung
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Documents\Eigene Musik
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Documents\Eigene Bilder
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\AppData\Local\Verlauf
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\AppData\Local\Anwendungsdaten
2015-08-23 19:20 - 2015-08-23 19:20 - 00000000 _SHDL C:\Users\Name\Anwendungsdaten
2015-08-23 19:20 - 2014-09-24 09:43 - 00000000 ___RD C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-23 19:20 - 2014-09-24 09:43 - 00000000 ___RD C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-23 19:20 - 2014-09-24 08:18 - 00000369 _____ C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-08-23 19:20 - 2014-09-24 08:18 - 00000369 _____ C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-08-23 19:20 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-23 19:20 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Name\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-23 19:17 - 2015-07-09 20:48 - 02758128 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-08-23 19:17 - 2015-07-09 20:48 - 00131712 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe
2015-08-23 19:17 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-08-23 19:17 - 2015-07-09 19:59 - 02412576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-08-23 19:17 - 2015-07-09 19:59 - 00112624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe
2015-08-23 19:17 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-08-23 19:17 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-08-23 19:17 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-08-23 19:17 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-08-23 19:17 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2015-08-23 19:16 - 2015-08-25 19:19 - 01919546 _____ C:\Windows\WindowsUpdate.log
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Vorlagen
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Startmenü
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Vorlagen
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Startmenü
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Dokumente
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2015-08-23 19:13 - 2015-08-23 19:13 - 00000000 _SHDL C:\Dokumente und Einstellungen
2015-08-23 18:44 - 2015-08-23 18:44 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-23 18:43 - 2015-08-23 19:37 - 00000000 ____D C:\Windows\Panther
2015-08-13 18:24 - 2015-08-13 18:24 - 00146072 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetLwf.sys
2015-08-13 18:24 - 2015-08-13 18:24 - 00117768 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp6.sys

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-27 16:16 - 2013-08-22 16:46 - 00014274 _____ C:\Windows\setupact.log
2015-08-27 16:16 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-25 19:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-25 18:16 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-08-25 16:04 - 2014-09-24 08:17 - 01686150 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-25 16:04 - 2014-09-24 07:43 - 00727930 _____ C:\Windows\system32\perfh007.dat
2015-08-25 16:04 - 2014-09-24 07:43 - 00151586 _____ C:\Windows\system32\perfc007.dat
2015-08-25 13:45 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-08-25 13:18 - 2014-09-23 23:06 - 00006038 _____ C:\Windows\PFRO.log
2015-08-25 13:17 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-08-25 11:34 - 2013-08-22 17:37 - 00002988 _____ C:\Windows\DtcInstall.log
2015-08-25 11:32 - 2013-08-22 16:44 - 00371968 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-25 00:25 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData
2015-08-25 00:25 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-08-25 00:25 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-25 00:25 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sr-Latn-RS
2015-08-25 00:25 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sr-Latn-CS
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\MediaViewer
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\FileManager
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Camera
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Portable Devices
2015-08-25 00:24 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ___SD C:\Windows\system32\dsc
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\sppui

FRST.txt Teil 8:

Code:

2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\setup
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\migwiz
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\Com
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sppui
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\setup
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\migwiz
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Com
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\IME
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-08-25 00:23 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-25 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\SysWOW64\oobe
2015-08-25 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-08-25 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\Sysprep
2015-08-25 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\oobe
2015-08-25 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\Dism
2015-08-25 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\servicing
2015-08-25 00:22 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2015-08-25 00:22 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-08-25 00:22 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2015-08-25 00:21 - 2014-09-24 09:43 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-08-25 00:21 - 2014-09-24 08:00 - 00000000 ____D C:\Program Files\Windows Journal
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\WinStore
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\WindowsPowerShell
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-25 00:21 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-08-24 21:17 - 2013-08-22 17:36 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2015-08-24 21:17 - 2013-08-22 17:36 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2015-08-24 17:00 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-08-23 19:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Recovery
2015-08-23 19:41 - 2013-08-22 17:36 - 00262144 _____ C:\Windows\system32\config\BCD-Template
2015-08-23 19:18 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-08-23 19:16 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-08-23 19:13 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT
2015-08-23 19:13 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default

Einige Dateien in TEMP:
====================
C:\Users\Name\AppData\Local\Temp\OfficeSetup.exe
C:\Users\Name\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-08-23 18:43

==================== Ende von FRST.txt ============================

Addition.txt:

FRST Additions Logfile:
Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:26-08-2015
durchgeführt von Name (2015-08-27 16:23:02)
Gestartet von C:\Users\Name\Desktop
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1401523435-2182861310-3413026540-500 - Administrator - Disabled)
Gast (S-1-5-21-1401523435-2182861310-3413026540-501 - Limited - Disabled)
Name (S-1-5-21-1401523435-2182861310-3413026540-1001 - Administrator - Enabled) => C:\Users\Name
HomeGroupUser$ (S-1-5-21-1401523435-2182861310-3413026540-1003 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Firefox Developer Edition 42.0a2 (x86 de) (HKLM-x32\...\Firefox Developer Edition 42.0a2 (x86 de)) (Version: 42.0a2 - Mozilla)
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4745.1002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1401523435-2182861310-3413026540-1001\...\OneDriveSetup.exe) (Version: 17.3.5930.0814 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4745.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4745.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4745.1002 - Microsoft Corporation) Hidden
Oracle VM VirtualBox 5.0.2 (HKLM\...\{6CB00039-29CC-42A1-8ED2-820821DA2B8A}) (Version: 5.0.2 - Oracle Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-1401523435-2182861310-3413026540-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Name\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Wiederherstellungspunkte =========================

23-08-2015 19:18:05 Windows Modules Installer

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {05F70C89-4E9E-46D2-91DF-557844ADAD74} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-28] (Microsoft Corporation)
Task: {06845800-4ECB-46DE-86E9-ED69FC3E8C0E} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {7393AA94-D0DB-45FA-871E-895052CEBC30} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1401523435-2182861310-3413026540-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {9919ACA5-1651-4FD3-914C-161801E1D126} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-14] (Microsoft Corporation)
Task: {EEC8AF5D-40BC-4C2A-BC33-79C4197E6E96} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-14] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2014-07-04 21:33 - 2014-07-04 21:33 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-08-23 19:34 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2014-07-04 21:33 - 2014-07-04 21:33 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2015-08-23 19:36 - 2015-08-23 19:40 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2015-08-23 19:34 - 2015-08-23 19:34 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Name\OneDrive:ms-properties

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-1401523435-2182861310-3413026540-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Name\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{71947BE4-0D88-49D3-9E22-FA5620F0169B}] => (Allow) C:\Users\Name\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{A757A267-8DF7-45D4-A12A-D5C1780EB68C}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [{3BAA2C85-3F78-4654-982B-3991E09E4B41}] => (Allow) C:\Program Files (x86)\Firefox Developer Edition\firefox.exe
FirewallRules: [TCP Query User{4998AA0B-67A6-469E-B55E-FF9A7DD72968}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{7823CE8D-365D-4904-A7C6-11CE4AB700B9}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (08/25/2015 06:02:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Marmalade.App.exe, Version: 1.0.0.0, Zeitstempel: 0x545c0bc8
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00630068
ID des fehlerhaften Prozesses: 0xcdc
Startzeit der fehlerhaften Anwendung: 0xMarmalade.App.exe0
Pfad der fehlerhaften Anwendung: Marmalade.App.exe1
Pfad des fehlerhaften Moduls: Marmalade.App.exe2
Berichtskennung: Marmalade.App.exe3
Vollständiger Name des fehlerhaften Pakets: Marmalade.App.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Marmalade.App.exe5

Error: (08/25/2015 06:02:51 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Marmalade.App.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00630068

Error: (08/25/2015 06:02:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Marmalade.App.exe, Version: 1.0.0.0, Zeitstempel: 0x545c0bc8
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00630068
ID des fehlerhaften Prozesses: 0x720
Startzeit der fehlerhaften Anwendung: 0xMarmalade.App.exe0
Pfad der fehlerhaften Anwendung: Marmalade.App.exe1
Pfad des fehlerhaften Moduls: Marmalade.App.exe2
Berichtskennung: Marmalade.App.exe3
Vollständiger Name des fehlerhaften Pakets: Marmalade.App.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Marmalade.App.exe5

Error: (08/25/2015 06:02:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Marmalade.App.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00630068

Error: (08/25/2015 06:01:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Marmalade.App.exe, Version: 1.0.0.0, Zeitstempel: 0x545c0bc8
Name des fehlerhaften Moduls: s3e_native.dll, Version: 0.0.0.0, Zeitstempel: 0x545c0bc6
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0001aceb
ID des fehlerhaften Prozesses: 0xbd0
Startzeit der fehlerhaften Anwendung: 0xMarmalade.App.exe0
Pfad der fehlerhaften Anwendung: Marmalade.App.exe1
Pfad des fehlerhaften Moduls: Marmalade.App.exe2
Berichtskennung: Marmalade.App.exe3
Vollständiger Name des fehlerhaften Pakets: Marmalade.App.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Marmalade.App.exe5

Error: (08/25/2015 06:01:47 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Marmalade.App.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 65E2ACEB
Stapel:

Error: (08/25/2015 03:52:08 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (08/24/2015 11:48:18 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm javaw.exe, Version 8.0.25.18 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: e8c

Startzeit: 01d0de51e99ff1d4

Endzeit: 70

Anwendungspfad: C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe

Berichts-ID: 39507748-4a45-11e5-8252-a4db3080e4a1

Vollständiger Name des fehlerhaften Pakets:

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


Systemfehler:
=============
Error: (08/27/2015 04:16:01 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎25.‎08.‎2015 um 19:19:29 unerwartet heruntergefahren.

Error: (08/25/2015 03:59:29 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎25.‎08.‎2015 um 15:18:36 unerwartet heruntergefahren.

Error: (08/25/2015 02:12:29 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070057 fehlgeschlagen: Microsoft.ZuneMusic

Error: (08/25/2015 02:11:36 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070057 fehlgeschlagen: Microsoft.BingWeather

Error: (08/25/2015 02:11:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070057 fehlgeschlagen: Microsoft.ZuneMusic

Error: (08/25/2015 02:11:23 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070057 fehlgeschlagen: Microsoft.ZuneVideo

Error: (08/25/2015 01:17:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Modules Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/25/2015 01:17:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/25/2015 01:17:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (08/25/2015 01:17:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft Office-Klick-und-Los-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.


Microsoft Office:
=========================
Error: (08/25/2015 06:02:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Marmalade.App.exe1.0.0.0545c0bc8unknown0.0.0.000000000c000000500630068cdc01d0df4f6af81a03C:\Program Files\WindowsApps\NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1c\Marmalade.App.exeunknownbcf35f19-4b42-11e5-8255-a4db3080e4a1NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1cApp

Error: (08/25/2015 06:02:51 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Marmalade.App.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00630068

Error: (08/25/2015 06:02:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Marmalade.App.exe1.0.0.0545c0bc8unknown0.0.0.000000000c00000050063006872001d0df4f6131409fC:\Program Files\WindowsApps\NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1c\Marmalade.App.exeunknowna7c27519-4b42-11e5-8255-a4db3080e4a1NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1cApp

Error: (08/25/2015 06:02:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Marmalade.App.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 00630068

Error: (08/25/2015 06:01:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Marmalade.App.exe1.0.0.0545c0bc8s3e_native.dll0.0.0.0545c0bc6c00000050001acebbd001d0df4f3f3a45c4C:\Program Files\WindowsApps\NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1c\Marmalade.App.exeC:\Program Files\WindowsApps\NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1c\s3e_native.dll97272c36-4b42-11e5-8255-a4db3080e4a1NekkiGmbH.ShadowFight2forWindows_1.7.15.0_x86__9ea1ktvsjkm1cApp

Error: (08/25/2015 06:01:47 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Marmalade.App.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: Ausnahmecode c0000005, Ausnahmeadresse 65E2ACEB
Stapel:

Error: (08/25/2015 03:52:08 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (08/24/2015 11:48:18 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: javaw.exe8.0.25.18e8c01d0de51e99ff1d470C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe39507748-4a45-11e5-8252-a4db3080e4a1


==================== Speicherinformationen ===========================

Processor: AMD E1-2500 APU with Radeon(TM) HD Graphics
Prozentuale Nutzung des RAM: 32%
Installierter physikalischer RAM: 3525.01 MB
Verfügbarer physikalischer RAM: 2384.88 MB
Summe virtueller Speicher: 4869.01 MB
Verfügbarer virtueller Speicher: 3600.5 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:444.6 GB) (Free:408.55 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D5A694CC)

Partition: GPT.

==================== Ende von Addition.txt ============================

--- --- ---


So. Das war alles :,D

schrauber 29.08.2015 08:36

Sieht gut aus. Noch Probleme?

Wandalensalz 30.08.2015 20:16

Nee, läuft wieder alles!!
Vielen Dank, für alles, echt eine super Seite, hier :)
Weiter so!!

(kann gerade nicht soviel schreiben, da ich am Handy schreibe)

Gruss
Wandalensalz

schrauber 31.08.2015 15:51

http://deeprybka.trojaner-board.de/b...cleanupneu.png
Cleanup:
(Die Reihenfolge ist hier entscheidend)

Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken.

Falls Combofix verwendet wurde:
http://deeprybka.trojaner-board.de/b.../combofix2.pngCombofix deinstallieren
  • Wichtig: Bitte Antivirus-Programm, evtl. vorhandenes Skript-Blocking und Anti-Malware Programme deaktivieren.
  • Drücke bitte die http://deeprybka.trojaner-board.de/b...ne/revo/w7.png + R Taste und schreibe Combofix /Uninstall in das Ausführen-Fenster.
  • Klicke auf OK.
    Damit wird Combofix komplett entfernt und der Cache der Systemwiederherstellung geleert.
  • Nun die eben deaktivierten Programme wieder aktivieren.

Alle Logs gepostet? Dann lade Dir bitte http://filepony.de/icon/tiny/delfix.pngDelFix herunter.
  • Schließe alle offenen Programme.
  • Starte die delfix.exe mit einem Doppelklick.
  • Setze vor jede Funktion ein Häkchen.
  • Klicke auf Start.

Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen.

Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...:dankeschoen:und/oder das Forum mit einer kleinen Spende http://www.trojaner-board.de/extra/spende.png unterstützen. :applaus:

http://deeprybka.trojaner-board.de/b...ast/schild.png
Absicherung:
Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen:

Browser
Java
Flash-Player
PDF-Reader

Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren.
Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen.

Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig.

Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank.
Meine Empfehlung:
http://filepony.de/icon/emsisoft_anti_malware.png
Emsisoft

Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen.

Optional:
http://filepony.de/icon/noscript.png NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen.
http://filepony.de/icon/malwarebytes_anti_exploit.pngMalwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen.


Lade Software von einem sauberen Portal wie http://filepony.de/images/microbanner.gif.
Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen.
Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner .


Abschließend noch ein paar grundsätzliche Bemerkungen:
Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems.
Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.


Alle Zeitangaben in WEZ +1. Es ist jetzt 07:14 Uhr.

Copyright ©2000-2024, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129