Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Habe ich einen Virus drauf? GiroPay24 (Logs beiliegend) (https://www.trojaner-board.de/183260-habe-virus-drauf-giropay24-logs-beiliegend.html)

cosinus 02.12.2016 20:08

Adware/Junkware/Toolbars entfernen

Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop!
Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren!


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


herrsocke 02.12.2016 20:47

Adw Cleaner
Code:

# AdwCleaner v6.030 - Bericht erstellt am 02/12/2016 um 20:52:26
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-12-02.1 [Server]
# Betriebssystem : Windows 10 Home  (X64)
# Benutzername : Gudrun - LAPTOP-76VTFU1F
# Gestartet von : C:\Users\Gudrun\Downloads\AdwCleaner_6.030.exe
# Modus: Suchlauf
# Unterstützung : https://www.malwarebytes.com/support



***** [ Dienste ] *****

Keine schädlichen Dienste gefunden.


***** [ Ordner ] *****

Keine schädlichen Ordner gefunden.


***** [ Dateien ] *****

Keine schädlichen Dateien gefunden.


***** [ DLL ] *****

Keine infizierten DLLs gefunden.


***** [ WMI ] *****

Keine schädlichen Schlüssel gefunden.


***** [ Verknüpfungen ] *****

Keine infizierten Verknüpfungen gefunden.


***** [ Aufgabenplanung ] *****

Keine schädlichen Aufgaben gefunden.


***** [ Registrierungsdatenbank ] *****

Keine schädlichen Elemente in der Registrierungsdatenbank gefunden.


***** [ Internetbrowser ] *****

Keine schädlichen Elemente in Firefox basierten Browsern gefunden.
Keine schädlichen Elemente in Chrome basierten Browsern gefunden.

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [1198 Bytes] - [02/12/2016 20:52:26]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1271 Bytes] ##########

JRT

Code:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 10 Home x64
Ran by Gudrun (Administrator) on 02.12.2016 at 20:44:33,42
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 02.12.2016 at 20:46:40,42
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Hast du in den logs vorher schon etwas gefunden was auf einen Trojaner schließt? Viele Grüße

cosinus 02.12.2016 22:26

Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken

http://www.trojaner-board.de/picture...&pictureid=611

herrsocke 03.12.2016 15:35

Hier sind die frischen Logs. (Laptop war seit den letzten Scans nichtmehr in Nutzung)


FRST.txt Part 1
Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-12-2016
durchgeführt von Gudrun (Administrator) auf LAPTOP-76VTFU1F (03-12-2016 15:29:47)
Gestartet von C:\Users\Gudrun\Desktop
Geladene Profile: Gudrun (Verfügbare Profile: Gudrun)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe


==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16475392 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-08-18] (Intel Corporation)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-12-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers-x32: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers-x32: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers-x32: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{31042036-cda3-4484-a0e3-300fd1ac1af0}: [DhcpNameServer] 40.33.1.66
Tcpip\..\Interfaces\{7421c53a-306c-4677-bcf7-55141c5c06c5}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-858045730-189694360-1164872201-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-858045730-189694360-1164872201-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-12-01] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-12-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-12-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-12-01] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default [2016-12-03]
CHR Extension: (Google Präsentationen) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-12-01]
CHR Extension: (Google Docs) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-01]
CHR Extension: (Google Drive) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-01]
CHR Extension: (YouTube) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-01]
CHR Extension: (Google Tabellen) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-12-01]
CHR Extension: (Google Docs Offline) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-01]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-12-01]
CHR Extension: (Google Mail) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-01]
CHR Extension: (Chrome Media Router) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-01]

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AtherosSvc; C:\WINDOWS\system32\AdminService.exe [355760 2016-06-26] (Windows (R) Win 7 DDK provider)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2267352 2016-08-30] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3073216 2016-10-30] (Microsoft Corporation)
S3 cplspcon; C:\WINDOWS\system32\IntelCpHDCPSvc.exe [613360 2016-04-07] (Intel Corporation)
S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2016-08-04] (Dashlane, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-08-18] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2016-04-07] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [976848 2016-01-14] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-02-05] (Intel Corporation) [Datei ist nicht signiert]
R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [26592 2016-03-04] (Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-02-05] (Intel Corporation) [Datei ist nicht signiert]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-02-11] (Intel Corporation)
R2 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [441136 2016-09-13] (Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [482608 2016-09-13] (Acer Incorporated)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [295840 2016-05-27] (acer)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe" [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 ETDI2C; C:\WINDOWS\system32\DRIVERS\ETDI2C.sys [183896 2016-03-24] (ELAN Microelectronic Corp.)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21344 2016-09-13] (Acer Incorporated)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 Qcamain10x64; C:\WINDOWS\system32\DRIVERS\Qcamain10x64.sys [2381112 2016-03-23] (Qualcomm Atheros, Inc.)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14688 2016-09-13] (Acer Incorporated)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [935168 2015-11-19] (Realtek                                            )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [769752 2015-12-18] (Realsil Semiconductor Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-12-03 15:29 - 2016-12-03 15:30 - 00014004 _____ C:\Users\Gudrun\Desktop\FRST.txt
2016-12-03 15:29 - 2016-12-03 15:29 - 00000000 ____D C:\Users\Gudrun\Desktop\FRST-OlderVersion
2016-12-02 20:49 - 2016-12-02 20:52 - 00000000 ____D C:\AdwCleaner
2016-12-02 20:43 - 2016-12-02 20:44 - 01631928 _____ (Malwarebytes) C:\Users\Gudrun\Downloads\JRT.exe
2016-12-02 20:26 - 2016-12-02 20:37 - 03910208 _____ C:\Users\Gudrun\Downloads\AdwCleaner_6.030.exe
2016-12-02 19:48 - 2016-12-02 19:47 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-12-02 03:42 - 2016-12-02 03:42 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-12-02 03:41 - 2016-12-02 03:41 - 00000000 ____D C:\ProgramData\USOShared
2016-12-02 03:40 - 2016-12-02 19:57 - 00000000 ____D C:\Users\Gudrun\AppData\Local\ConnectedDevicesPlatform
2016-12-02 03:40 - 2016-12-02 03:40 - 00000020 ___SH C:\Users\Gudrun\ntuser.ini
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-12-02 03:39 - 2016-12-02 03:39 - 00007623 _____ C:\WINDOWS\diagwrn.xml
2016-12-02 03:39 - 2016-12-02 03:39 - 00007623 _____ C:\WINDOWS\diagerr.xml
2016-12-02 03:38 - 2016-12-02 19:43 - 00003506 _____ C:\WINDOWS\System32\Tasks\DashlaneUpgradeCheck
2016-12-02 03:38 - 2016-12-02 19:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-12-02 03:38 - 2016-12-02 03:38 - 00003852 _____ C:\WINDOWS\System32\Tasks\ACCAgent
2016-12-02 03:38 - 2016-12-02 03:38 - 00003692 _____ C:\WINDOWS\System32\Tasks\AcerCMUpdateTask2.1.16258
2016-12-02 03:38 - 2016-12-02 03:38 - 00003654 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-02 03:38 - 2016-12-02 03:38 - 00003430 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-02 03:38 - 2016-12-02 03:38 - 00003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2016-12-02 03:38 - 2016-12-02 03:38 - 00002822 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-12-02 03:38 - 2016-12-02 03:38 - 00002766 _____ C:\WINDOWS\System32\Tasks\UbtFrameworkService
2016-12-02 03:38 - 2016-12-02 03:38 - 00002762 _____ C:\WINDOWS\System32\Tasks\BacKGroundAgent
2016-12-02 03:38 - 2016-12-02 03:38 - 00002534 _____ C:\WINDOWS\System32\Tasks\AcerCloud
2016-12-02 03:38 - 2016-12-02 03:38 - 00002328 _____ C:\WINDOWS\System32\Tasks\ACCBackgroundApplication
2016-12-02 03:38 - 2016-12-02 03:38 - 00002256 _____ C:\WINDOWS\System32\Tasks\Power Button
2016-12-02 03:38 - 2016-12-02 03:38 - 00002180 _____ C:\WINDOWS\System32\Tasks\Quick Access
2016-12-02 03:38 - 2016-12-02 03:38 - 00002042 _____ C:\WINDOWS\System32\Tasks\FubToolByPLD
2016-12-02 03:37 - 2016-12-02 03:37 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-12-02 03:35 - 2016-12-02 03:35 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-12-02 03:32 - 2016-12-02 03:42 - 00000000 ____D C:\Users\Gudrun
2016-12-02 03:32 - 2016-12-02 03:35 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Vorlagen
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Startmenü
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Netzwerkumgebung
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Lokale Einstellungen
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Eigene Dateien
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Druckumgebung
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Documents\Eigene Videos
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Documents\Eigene Musik
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Documents\Eigene Bilder
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\AppData\Local\Verlauf
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\AppData\Local\Anwendungsdaten
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Anwendungsdaten
2016-12-02 03:32 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-12-02 03:31 - 2016-12-02 03:31 - 01621874 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\system32\IntelSSTAPO
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\system32\DAX2
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\ProgramData\rtkSSTSetting
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\Program Files\Realtek
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\Program Files\Elantech
2016-12-02 03:31 - 2016-06-03 01:29 - 03181209 _____ C:\WINDOWS\system32\Drivers\rtkSSTSetting.zip
2016-12-02 03:30 - 2016-12-03 15:28 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-12-02 03:30 - 2016-12-02 19:41 - 00330480 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-12-02 03:30 - 2016-12-02 19:41 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-02 03:30 - 2016-12-02 03:33 - 00000000 ____D C:\Program Files\Intel
2016-12-02 03:30 - 2016-12-02 03:30 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-12-02 03:30 - 2016-12-02 03:30 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-12-02 03:30 - 2016-12-02 03:30 - 00000000 ____D C:\Program Files\Common Files\Atheros
2016-12-02 03:30 - 2016-12-02 03:30 - 00000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2016-12-02 03:30 - 2016-04-07 05:36 - 00091136 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-12-02 03:30 - 2016-04-07 05:26 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2016-12-02 03:29 - 2016-12-02 03:40 - 00000000 ___DC C:\WINDOWS\Panther
2016-12-02 03:28 - 2016-12-02 03:28 - 00000000 ____D C:\Windows.old
2016-12-02 03:26 - 2016-12-02 03:26 - 06574592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 04148736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 03778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02747392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 02481768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02257104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02049480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01990648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01853776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01847048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01365504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01362504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01343928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01061968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-12-02 03:26 - 2016-12-02 03:26 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00951904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00848736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00755656 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00691080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00640976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00602464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00498952 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00446896 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-12-02 03:26 - 2016-12-02 03:26 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00409952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-12-02 03:26 - 2016-12-02 03:26 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00396168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00313560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2016-12-02 03:26 - 2016-12-02 03:26 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2016-12-02 03:26 - 2016-12-02 03:26 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00121368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00108384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 22563840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 22223968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 19415552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 19415040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 13441024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 13081600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 12349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 12175360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 08156080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 08127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 08075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07816544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 07792640 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07469056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 06657176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05384192 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 04557824 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 03287552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03116544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03054080 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 02947072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02827864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 02750936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02748928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02708992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02678056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02512384 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02423296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 02360832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02290176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02276736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02107392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 02083840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01913344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01851696 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01609920 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01570672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01556712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01554944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01425000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-12-02 03:25 - 2016-12-02 03:25 - 01348608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01267504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01235296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 01176664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01066328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-12-02 03:25 - 2016-12-02 03:25 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-12-02 03:25 - 2016-12-02 03:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00940032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00939872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00908640 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00790760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00788624 _____ C:\WINDOWS\SysWOW64\locale.nls
2016-12-02 03:25 - 2016-12-02 03:25 - 00788624 _____ C:\WINDOWS\system32\locale.nls
2016-12-02 03:25 - 2016-12-02 03:25 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00749920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00742704 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00714592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00681304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00665768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00658272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00650240 _____ (Microsoft) C:\WINDOWS\system32\DbgModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll


herrsocke 03.12.2016 15:36

Part 2
Code:

2016-12-02 03:25 - 2016-12-02 03:25 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00596832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00595296 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenterCPL.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00545936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00509280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00500064 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00461312 _____ (Microsoft) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00450392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00378720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-12-02 03:25 - 2016-12-02 03:25 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00292872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00283488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-12-02 03:25 - 2016-12-02 03:25 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00238056 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00232800 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_G18030.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingFolder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00204288 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoplay.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS
2016-12-02 03:25 - 2016-12-02 03:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoplay.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DscCoreConfProv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00133472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chartv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmifw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthExt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-12-02 03:25 - 2016-12-02 03:25 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmifw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00079200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00078688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetailsUpdate.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AddressParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsiwmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetailsUpdate.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00063328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00057400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AddressParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00048992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00044472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00041824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00036168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\encapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi_passthru.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stdole2.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_IS2022.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\c_GSM7.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccessRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-12-02 03:25 - 2016-12-02 03:25 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2016-12-02 03:25 - 2016-12-02 03:25 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneutilRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-12-02 03:18 - 2016-12-02 03:18 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files\MSBuild
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-12-02 03:17 - 2016-05-25 14:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 14:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 14:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-12-02 03:17 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-12-02 03:16 - 2016-12-02 03:16 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2016-12-02 03:16 - 2016-12-02 03:16 - 00199008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2016-12-02 01:04 - 2016-12-02 01:05 - 00263224 _____ C:\TDSSKiller.3.1.0.12_02.12.2016_01.04.54_log.txt
2016-12-02 00:40 - 2016-12-02 03:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Videos
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Programme
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-12-02 00:40 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-12-02 00:40 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-12-02 00:30 - 2016-12-02 00:30 - 00000000 ____D C:\Program Files (x86)\ESET
2016-12-02 00:18 - 2016-12-02 00:18 - 00002192 _____ C:\Users\Gudrun\Downloads\Fixlog.txt
2016-12-02 00:02 - 2016-12-03 15:29 - 02411520 _____ (Farbar) C:\Users\Gudrun\Desktop\FRST64.exe
2016-12-02 00:02 - 2016-12-03 15:29 - 00000000 ____D C:\FRST
2016-12-02 00:02 - 2016-12-02 00:02 - 00000000 ____D C:\Users\Gudrun\AppData\Local\CrashDumps
2016-12-01 23:57 - 2016-12-01 23:58 - 00989854 _____ C:\TDSSKiller.3.1.0.12_01.12.2016_23.57.00_log.txt
2016-12-01 23:54 - 2016-12-02 03:33 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2016-12-01 23:54 - 2016-12-02 03:33 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-12-01 23:47 - 2016-12-01 23:47 - 00000000 ____D C:\Users\Gudrun\AppData\Local\NetworkTiles
2016-12-01 23:39 - 2016-12-02 19:48 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-12-01 23:39 - 2016-12-02 01:25 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-12-01 23:39 - 2016-12-02 00:40 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-12-01 23:38 - 2016-12-02 01:25 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-12-01 23:17 - 2016-12-02 03:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection
2016-12-01 23:16 - 2016-12-02 20:44 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-12-01 23:16 - 2016-12-01 23:38 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2016-12-01 21:54 - 2016-12-01 21:55 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-12-01 21:53 - 2016-12-01 21:53 - 141011376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-12-01 21:48 - 2016-07-01 04:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll
2016-12-01 21:47 - 2016-07-01 04:57 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2016-12-01 19:35 - 2016-12-01 19:40 - 00000000 ____D C:\Users\Gudrun\Desktop\Natur
2016-12-01 19:35 - 2016-12-01 19:35 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-12-01 18:05 - 2016-12-01 18:05 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Comms
2016-12-01 17:54 - 2016-12-01 17:54 - 00002340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-01 17:54 - 2016-12-01 17:54 - 00002328 _____ C:\Users\Public\Desktop\Internet.lnk
2016-12-01 17:53 - 2016-12-02 02:58 - 00001142 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-12-01 17:53 - 2016-12-02 00:19 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-12-01 17:53 - 2016-12-01 18:09 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Google
2016-12-01 17:53 - 2016-12-01 17:54 - 00000000 ____D C:\Program Files (x86)\Google
2016-12-01 17:51 - 2016-12-01 17:52 - 00000000 ____D C:\Users\Gudrun\AppData\Local\MicrosoftEdge
2016-12-01 17:50 - 2016-12-01 17:50 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Macromedia
2016-12-01 17:49 - 2016-12-01 17:49 - 00000000 ____D C:\Users\Public\App Explorer
2016-12-01 17:49 - 2016-12-01 17:49 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Intel Corporation
2016-12-01 17:49 - 2016-12-01 17:49 - 00000000 ____D C:\Users\Gudrun\AppData\Local\CareCenter
2016-12-01 17:48 - 2016-12-02 03:42 - 00002390 _____ C:\Users\Gudrun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-12-01 17:48 - 2016-12-02 03:42 - 00000000 ___RD C:\Users\Gudrun\OneDrive
2016-12-01 17:48 - 2016-12-01 19:17 - 00000000 ____D C:\Users\Gudrun\AppData\Local\clear.fi
2016-12-01 17:48 - 2016-12-01 17:48 - 00001333 _____ C:\Users\Gudrun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\PicStream
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Skype
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\AppData\Local\AOP SDK
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\AppData\Local\ActiveSync
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\ProgramData\Dashlane
2016-12-01 17:46 - 2016-12-02 20:03 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Packages
2016-12-01 17:46 - 2016-12-02 19:41 - 00000000 __SHD C:\Users\Gudrun\IntelGraphicsProfiles
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ___HD C:\ProgramData\O949
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Adobe
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Local\VirtualStore
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Local\TileDataLayer
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Publishers
2016-12-01 17:44 - 2016-12-01 17:44 - 00000000 ____D C:\WINDOWS\oem
2016-11-18 00:06 - 2016-11-18 00:06 - 00000000 ____D C:\WINDOWS\NAPP_Dism_Log
2016-11-17 17:10 - 2016-11-17 17:10 - 00001194 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dashlane.lnk
2016-11-17 17:10 - 2016-11-17 17:10 - 00000000 ___HD C:\ProgramData\{ED8D8B70-196F-4C4E-B1B5-3FDE44B8E688}
2016-11-17 17:10 - 2016-11-17 17:10 - 00000000 ____D C:\Program Files (x86)\Dashlane
2016-11-17 17:07 - 2016-12-01 19:27 - 00000000 ____D C:\ProgramData\Acer
2016-11-17 17:06 - 2016-12-01 19:20 - 00000000 ____D C:\Program Files (x86)\Acer
2016-11-17 17:06 - 2016-11-17 17:06 - 00001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-11-17 17:06 - 2016-11-17 17:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-17 17:06 - 2016-11-17 17:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-11-17 16:55 - 2016-11-17 16:55 - 00000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
2016-11-17 16:55 - 2016-11-17 16:55 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
2016-11-17 16:49 - 2016-12-02 03:35 - 00000000 ____D C:\WINDOWS\system32\ihvmanager
2016-11-17 16:49 - 2016-11-17 16:49 - 00000000 ____D C:\Program Files (x86)\Qualcomm Atheros
2016-11-17 16:48 - 2016-11-17 16:48 - 00016404 _____ C:\WINDOWS\system32\results.xml
2016-11-17 16:45 - 2016-11-17 16:46 - 00000000 ___HD C:\Intel
2016-11-17 16:45 - 2015-12-18 03:06 - 04330200 _____ (TODO: <Company name>) C:\WINDOWS\RtCRU64.exe
2016-11-17 16:45 - 2015-12-18 03:06 - 00769752 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsPer.sys
2016-11-17 16:45 - 2014-10-20 10:50 - 00083160 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll
2016-11-17 16:45 - 2014-01-27 06:39 - 09890008 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2016-11-17 16:42 - 2016-11-17 16:44 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-11-17 16:42 - 2016-06-03 01:29 - 72520720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2016-11-17 16:42 - 2016-06-03 01:29 - 14057256 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 13122584 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 12988352 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 10512448 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSSTAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 07172920 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 07096192 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 06402432 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 06264640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 06064046 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2016-11-17 16:42 - 2016-06-03 01:29 - 05804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2016-11-17 16:42 - 2016-06-03 01:29 - 05776968 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 05593624 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 05339552 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 05111040 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2016-11-17 16:42 - 2016-06-03 01:29 - 03299824 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03283248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03282544 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03199744 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03181209 _____ C:\WINDOWS\system32\Drivers\rtkSSTsetting.dat
2016-11-17 16:42 - 2016-06-03 01:29 - 03096248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02895104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2016-11-17 16:42 - 2016-06-03 01:29 - 02825104 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02726416 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02477520 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02437760 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02190992 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02110600 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02060032 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02050184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01965816 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01959608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01847888 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01780624 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01608128 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64APO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01591064 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01508936 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01435144 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01422928 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01382240 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01355616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01336544 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01334384 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01213664 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01186832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01166168 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01061120 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01023240 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01003864 _____ (Nahimic Inc) C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00999856 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00965032 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00962056 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00931624 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00927424 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00923744 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00873472 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00743968 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00727440 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00716112 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00708312 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00689888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00678184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00677672 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00618192 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00589072 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.DLL
2016-11-17 16:42 - 2016-06-03 01:29 - 00574760 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00532384 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00524680 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00514528 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00504312 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00500560 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00472312 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00467168 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00450120 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00447728 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00447104 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00445400 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00441272 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00428232 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00416512 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00387320 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00381416 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00371456 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00366128 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00362056 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00360352 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00341152 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00341152 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00330568 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00327456 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00310424 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00272720 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00258872 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00253904 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00253872 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00252880 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00231920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00221968 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00214832 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00203848 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00192984 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00190936 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00190936 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00179600 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00166208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00158704 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00154368 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00151792 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00134208 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00118592 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00110984 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00105312 _____ C:\WINDOWS\system32\audioLibVc.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00090920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00088320 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00084616 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00075544 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00023696 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2016-11-17 16:42 - 2016-04-11 06:38 - 02838232 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2016-11-17 16:41 - 2016-12-02 03:35 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-11-17 16:41 - 2016-11-17 16:41 - 01829522 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-11-17 16:38 - 2016-11-17 16:46 - 00000000 ____D C:\Program Files (x86)\Intel
2016-11-17 16:35 - 2016-11-17 16:49 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-11-17 16:35 - 2016-11-17 16:45 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-11-17 16:35 - 2015-11-19 05:16 - 00935168 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2016-11-17 16:35 - 2015-11-19 05:16 - 00082544 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2016-11-17 16:34 - 2016-11-17 16:39 - 00000000 ____D C:\ProgramData\Intel
2016-11-17 15:39 - 2016-12-02 03:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools
2016-11-17 15:39 - 2016-11-17 15:39 - 00002585 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002581 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002560 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002502 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002471 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-11-17 15:38 - 2016-12-01 18:06 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-11-17 15:38 - 2016-11-17 15:38 - 00000000 ____D C:\Program Files\Microsoft Office 15

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-12-02 20:04 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-12-02 20:04 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-12-02 20:03 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF
2016-12-02 19:45 - 2016-08-03 05:57 - 01508656 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-02 19:45 - 2016-07-16 23:51 - 00518574 _____ C:\WINDOWS\system32\perfh007.dat
2016-12-02 19:45 - 2016-07-16 23:51 - 00094720 _____ C:\WINDOWS\system32\perfc007.dat
2016-12-02 19:41 - 2016-08-03 05:49 - 00000000 ____D C:\ProgramData\McAfee
2016-12-02 19:41 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-12-02 19:36 - 2016-07-16 07:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-12-02 19:35 - 2015-10-30 07:28 - 00000000 ____D C:\Users\Default.migrated
2016-12-02 19:23 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-12-02 03:41 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-12-02 03:40 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
2016-12-02 03:40 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows NT
2016-12-02 03:40 - 2016-02-13 14:20 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-12-02 03:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-12-02 03:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Registration
2016-12-02 03:39 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-12-02 03:36 - 2016-07-16 12:47 - 00000000 __RHD C:\Users\Public\Libraries
2016-12-02 03:35 - 2016-08-03 05:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2016-12-02 03:35 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-12-02 03:35 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-12-02 03:33 - 2016-07-16 23:52 - 00000000 ____D C:\WINDOWS\OCR
2016-12-02 03:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\spool
2016-12-02 03:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-12-02 03:33 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-12-02 03:32 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-12-02 03:31 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-12-02 03:31 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-12-02 03:31 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-12-02 03:29 - 2016-07-16 12:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-12-02 03:27 - 2016-07-16 12:47 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___RD C:\Program Files\Windows Defender
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\setup
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\es-MX
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Provisioning
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-12-02 03:27 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-12-02 03:27 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-12-02 03:17 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-12-02 03:17 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-12-02 03:09 - 2016-07-17 00:55 - 00000000 ___HD C:\$WINDOWS.~BT
2016-12-01 21:22 - 2015-10-30 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-12-01 21:22 - 2015-10-30 08:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-12-01 19:20 - 2016-08-03 06:34 - 00000000 ___HD C:\OEM
2016-12-01 17:49 - 2016-08-03 05:48 - 00000000 ____D C:\ProgramData\OEM
2016-11-17 17:12 - 2016-08-03 05:48 - 00000000 ____D C:\Program Files\Acer
2016-11-17 16:37 - 2016-08-03 05:48 - 00000000 ____D C:\ProgramData\Package Cache

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-12-02 03:31 - 2016-12-02 03:31 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\Gudrun\AppData\Local\Temp\0109651480703722mcinst.exe


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-12-02 03:30

==================== Ende von FRST.txt ============================


herrsocke 03.12.2016 15:37

Additional.txt
Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-12-2016
durchgeführt von Gudrun (03-12-2016 15:31:09)
Gestartet von C:\Users\Gudrun\Desktop
Windows 10 Home Version 1607 (X64) (2016-12-02 02:40:15)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-858045730-189694360-1164872201-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-858045730-189694360-1164872201-503 - Limited - Disabled)
Gast (S-1-5-21-858045730-189694360-1164872201-501 - Limited - Disabled)
Gudrun (S-1-5-21-858045730-189694360-1164872201-1001 - Administrator - Enabled) => C:\Users\Gudrun

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.07.2004 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.08.2003.3 - Acer Incorporated)
Acer Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3024 - Acer Incorporated)
Acer Configuration Manager (HKLM-x32\...\{414D554E-4453-454E-0201-000000016258}) (Version: 2.1.16258 - Acer)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2004 - Acer Incorporated)
Acer Quick Access (HKLM\...\{8BBF04F1-C68A-441C-B5EF-446EE9960EAF}) (Version: 2.01.3008 - Acer Incorporated)
Acer UEIP Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 3.02.3001 - Acer Incorporated)
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.22.2001.0 - Acer Incorporated)
Booking.com Weblink (HKLM-x32\...\{617FC0E5-23D3-437D-9D19-6754E8287A79}) (Version: 1.16.0726 - Acer)
Dashlane Upgrade Service (HKLM-x32\...\Dashlane Upgrade Service) (Version: 2.1.12.0 - Dashlane, Inc.)
eBay Weblink (HKLM-x32\...\{7F3596EF-B661-43EE-A321-AD3C3EB9B525}) (Version: 1.16.0726 - Acer)
ELAN HIDI2C Filter Driver X64 13.6.5.2_WHQL (HKLM\...\Elantech) (Version: 13.6.5.2 - ELAN Microelectronic Corp.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.2.1183 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4390 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.1.1030 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.13 - Intel(R) Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{CCBE9F01-C2C3-469C-A508-2E23A7495E91}) (Version: 1.0.0.609 - Intel Corporation)
Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{1CF84962-50F8-48CA-9082-B70F3A02C686}) (Version: 17.0.0.611 - Kaspersky Lab)
Kaspersky Secure Connection (x32 Version: 17.0.0.611 - Kaspersky Lab) Hidden
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.7466.2038 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Firefox 45.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 45.0 (x86 en-US)) (Version: 45.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7426.1015 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10299 - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.191 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.21287 - Realtek Semiconduct Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7836 - Realtek Semiconductor Corp.)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {00392177-6784-4201-8E6B-BAC91A7FD34C} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe [2016-09-13] (Acer Incorporated)
Task: {07F59AE5-6782-43EA-BD3C-C306351C6A83} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2016-08-30] (Acer Incorporated)
Task: {1B277D05-4F77-4B0F-87B6-D80224F74345} - System32\Tasks\FubToolByPLD => C:\OEM\Preload\FubTool\FubTool.exe [2015-05-14] ()
Task: {29477E28-D284-4057-A35A-4F0C46B8E093} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-01] (Google Inc.)
Task: {2E655E6B-48B6-44DD-967D-4409F56D7C9C} - System32\Tasks\Microsoft\Office\Microsoft Office Touchless Attach Notification => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation)
Task: {35F47775-2C7C-43E4-AE12-28FD5976F2B6} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2016-09-13] (Acer Incorporated)
Task: {3D2AE36D-2C78-4B33-AAEE-F7A0E8646042} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [2016-06-24] ()
Task: {6AF9AF5F-F7C9-4CC4-B588-AA6B70665004} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2016-09-09] (Acer)
Task: {7114C4AA-FB53-465C-A785-EFA135ACABF0} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-01-14] (Intel(R) Corporation)
Task: {7389B057-00A8-4658-A254-2CCF0181197B} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"]
Task: {7C4C42E0-2850-4834-9405-8BABEE340C3D} - System32\Tasks\AcerCMUpdateTask2.1.16258 => C:\Program Files (x86)\Acer\Amundsen\2.1.16258\AWC.exe [2016-09-20] ()
Task: {8AC5190B-AA55-4091-A584-83D6E0CF1AE6} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2016-06-24] ()
Task: {C7B0C9A2-A52D-4C2F-802A-80D9D80A2313} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation)
Task: {DBC16A54-25FB-40A4-8B7B-B89F139C6F83} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-01] (Google Inc.)
Task: {E7CE31AC-E513-4239-B705-C2D14616AB5C} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-13] (TODO: <Company name>)
Task: {F8172B4B-7F28-46FC-998C-D6C816CB0565} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-04 20:26 - 2016-03-04 20:26 - 05570728 _____ () C:\WINDOWS\system32\IntelSSTAPO\ParameterService\libxml2-2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-12-02 03:42 - 2016-12-02 03:42 - 01864384 _____ () C:\Users\Gudrun\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll
2016-11-17 17:24 - 2016-05-16 11:02 - 00111320 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-12-02 20:03 - 2016-12-02 20:03 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-12-02 20:03 - 2016-12-02 20:03 - 00178688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-12-02 20:03 - 2016-12-02 20:03 - 41609728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-12-01 17:54 - 2016-11-08 22:03 - 02367080 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libglesv2.dll
2016-12-01 17:54 - 2016-11-08 22:03 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libegl.dll
2016-02-11 17:47 - 2016-02-11 17:47 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2015-10-30 08:24 - 2015-10-30 08:21 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-858045730-189694360-1164872201-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Gudrun\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{ff7e7bd7-8a6d-43d1-a69a-14a95242d099}.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => LPort=139
FirewallRules: [{1ABFCD15-FFD4-4CC8-9EF5-0AF7298234F4}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{8530A612-6D88-4835-BBBD-F8568BDB0E43}] => C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{27E6CF95-A83C-4897-B7F9-A5B2243192CB}] => C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{20963FC8-6978-4DE0-A5A7-F6BA7DFAB4FC}] => C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{D763DC77-D1A2-42EF-B6C0-B6B32B3033FB}] => C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{D1F54B71-9858-483F-B4E6-4A5A59730C66}] => C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{07B99B8E-7A09-4B38-919F-EE0D7017FFB6}] => C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{B08B1ECF-7655-486A-A3A7-6EE35413E676}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{267A7BFD-7A4C-4E30-BD35-D6ABF6366A12}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BA303782-AF6D-443B-9D57-FEF8BDBDB97F}] => C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe

==================== Wiederherstellungspunkte =========================

02-12-2016 19:22:32 Windows Update
02-12-2016 20:44:33 JRT Pre-Junkware Removal

==================== Fehlerhafte Geräte im Gerätemanager =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (12/02/2016 08:44:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.14393.82, Zeitstempel: 0x57a55dc6
Name des fehlerhaften Moduls: CoreUIComponents.dll, Version: 0.0.0.0, Zeitstempel: 0x57dac4df
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000006866a
ID des fehlerhaften Prozesses: 0x2374
Startzeit der fehlerhaften Anwendung: 0x01d24cceefadfb33
Pfad der fehlerhaften Anwendung: C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\CoreUIComponents.dll
Berichtskennung: f0f9f5fd-ce9f-4f0e-9c3e-a408c544d6d7
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel

Error: (12/02/2016 08:44:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (12/02/2016 08:31:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/02/2016 08:28:20 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: LAPTOP-76VTFU1F)
Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.14393.447_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte.

Error: (12/02/2016 08:23:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: LAPTOP-76VTFU1F)
Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.14393.447_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte.

Error: (12/02/2016 08:12:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: LAPTOP-76VTFU1F)
Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.14393.447_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte.

Error: (12/02/2016 08:11:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/02/2016 08:03:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/02/2016 07:56:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/02/2016 07:46:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.


Systemfehler:
=============
Error: (12/02/2016 09:55:19 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 09:50:29 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 09:16:29 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 07:41:39 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 07:41:39 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 03:43:35 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 03:40:21 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 03:40:21 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 03:40:20 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 03:39:50 AM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als
Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser
Konfiguration nicht gestartet zu sein.


==================== Speicherinformationen ===========================

Prozessor: Intel(R) Core(TM) i3-6006U CPU @ 2.00GHz
Prozentuale Nutzung des RAM: 51%
Installierter physikalischer RAM: 3969.9 MB
Verfügbarer physikalischer RAM: 1920.29 MB
Summe virtueller Speicher: 5377.9 MB
Verfügbarer virtueller Speicher: 3096.02 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:237.36 GB) (Free:184.48 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: B1CFBAD7)

Partition: GPT.

==================== Ende von Addition.txt ============================


cosinus 03.12.2016 19:36

FRST-Fix

Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

Tcpip\..\Interfaces\{31042036-cda3-4484-a0e3-300fd1ac1af0}: [DhcpNameServer] 40.33.1.66
HKU\S-1-5-21-858045730-189694360-1164872201-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer17win10.msn.com/?pc=ACTE
S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe" [X]
C:\Windows.old
C:\Program Files\Common Files\McAfee
folder: C:\ProgramData\O949
folder: C:\ProgramData\{ED8D8B70-196F-4C4E-B1B5-3FDE44B8E688}
emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


herrsocke 03.12.2016 23:05

Vielen Dank!

Datei besteht aus 900.000 Zeichen und ist über 1mb groß, wie soll ich sie posten?

Habe es mal als 7zip angehangen falls es okay ist.

cosinus 05.12.2016 09:36

Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken

http://www.trojaner-board.de/picture...&pictureid=611

herrsocke 05.12.2016 16:05

Hier sind die frischen Logs:

FRST.txt Part 1
Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-12-2016
durchgeführt von Gudrun (Administrator) auf LAPTOP-76VTFU1F (05-12-2016 16:01:56)
Gestartet von C:\Users\Gudrun\Desktop
Geladene Profile: Gudrun (Verfügbare Profile: Gudrun)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe
() C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.16102.10341.0_x64__8wekyb3d8bbwe\Music.UI.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16475392 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-08-18] (Intel Corporation)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-12-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers-x32: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers-x32: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated)
ShellIconOverlayIdentifiers-x32: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{7421c53a-306c-4677-bcf7-55141c5c06c5}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-858045730-189694360-1164872201-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-12-01] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-12-01] (Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-12-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-12-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-12-01] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default [2016-12-05]
CHR Extension: (Google Präsentationen) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-12-01]
CHR Extension: (Google Docs) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-01]
CHR Extension: (Google Drive) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-01]
CHR Extension: (YouTube) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-01]
CHR Extension: (Adblock Plus) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-12-03]
CHR Extension: (Google Tabellen) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-12-01]
CHR Extension: (Google Docs Offline) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-01]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-12-01]
CHR Extension: (Google Mail) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-01]
CHR Extension: (Chrome Media Router) - C:\Users\Gudrun\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-01]

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AtherosSvc; C:\WINDOWS\system32\AdminService.exe [355760 2016-06-26] (Windows (R) Win 7 DDK provider)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2267352 2016-08-30] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3073216 2016-10-30] (Microsoft Corporation)
S3 cplspcon; C:\WINDOWS\system32\IntelCpHDCPSvc.exe [613360 2016-04-07] (Intel Corporation)
S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2016-08-04] (Dashlane, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-08-18] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2016-04-07] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [976848 2016-01-14] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-02-05] (Intel Corporation) [Datei ist nicht signiert]
R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [26592 2016-03-04] (Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-02-05] (Intel Corporation) [Datei ist nicht signiert]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-02-11] (Intel Corporation)
R2 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [441136 2016-09-13] (Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [482608 2016-09-13] (Acer Incorporated)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [295840 2016-05-27] (acer)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 ETDI2C; C:\WINDOWS\system32\DRIVERS\ETDI2C.sys [183896 2016-03-24] (ELAN Microelectronic Corp.)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21344 2016-09-13] (Acer Incorporated)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-12-04] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 Qcamain10x64; C:\WINDOWS\system32\DRIVERS\Qcamain10x64.sys [2381112 2016-03-23] (Qualcomm Atheros, Inc.)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14688 2016-09-13] (Acer Incorporated)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [935168 2015-11-19] (Realtek                                            )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [769752 2015-12-18] (Realsil Semiconductor Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-12-05 16:01 - 2016-12-05 16:02 - 00015126 _____ C:\Users\Gudrun\Desktop\FRST.txt
2016-12-03 23:07 - 2016-12-03 23:07 - 01381582 _____ (Igor Pavlov) C:\Users\Gudrun\Downloads\7z1604-x64.exe
2016-12-03 23:07 - 2016-12-03 23:07 - 01110564 _____ (Igor Pavlov) C:\Users\Gudrun\Downloads\7z1604.exe
2016-12-03 23:07 - 2016-12-03 23:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-12-03 23:07 - 2016-12-03 23:07 - 00000000 ____D C:\Program Files\7-Zip
2016-12-03 22:52 - 2016-12-03 23:08 - 01937195 _____ C:\Users\Gudrun\Desktop\Fixlog.txt
2016-12-03 22:50 - 2016-12-03 22:50 - 00000496 _____ C:\Users\Gudrun\Documents\Fixlist.txt
2016-12-02 20:49 - 2016-12-02 20:52 - 00000000 ____D C:\AdwCleaner
2016-12-02 20:43 - 2016-12-02 20:44 - 01631928 _____ (Malwarebytes) C:\Users\Gudrun\Downloads\JRT.exe
2016-12-02 20:26 - 2016-12-02 20:37 - 03910208 _____ C:\Users\Gudrun\Downloads\AdwCleaner_6.030.exe
2016-12-02 19:48 - 2016-12-02 19:47 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-12-02 03:42 - 2016-12-02 03:42 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-12-02 03:41 - 2016-12-02 03:41 - 00000000 ____D C:\ProgramData\USOShared
2016-12-02 03:40 - 2016-12-02 19:57 - 00000000 ____D C:\Users\Gudrun\AppData\Local\ConnectedDevicesPlatform
2016-12-02 03:40 - 2016-12-02 03:40 - 00000020 ___SH C:\Users\Gudrun\ntuser.ini
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-12-02 03:40 - 2016-12-02 03:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-12-02 03:39 - 2016-12-02 03:39 - 00007623 _____ C:\WINDOWS\diagwrn.xml
2016-12-02 03:39 - 2016-12-02 03:39 - 00007623 _____ C:\WINDOWS\diagerr.xml
2016-12-02 03:38 - 2016-12-05 15:58 - 00003508 _____ C:\WINDOWS\System32\Tasks\DashlaneUpgradeCheck
2016-12-02 03:38 - 2016-12-03 22:53 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-12-02 03:38 - 2016-12-02 03:38 - 00003852 _____ C:\WINDOWS\System32\Tasks\ACCAgent
2016-12-02 03:38 - 2016-12-02 03:38 - 00003692 _____ C:\WINDOWS\System32\Tasks\AcerCMUpdateTask2.1.16258
2016-12-02 03:38 - 2016-12-02 03:38 - 00003654 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-02 03:38 - 2016-12-02 03:38 - 00003430 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-02 03:38 - 2016-12-02 03:38 - 00003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2016-12-02 03:38 - 2016-12-02 03:38 - 00002822 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-12-02 03:38 - 2016-12-02 03:38 - 00002766 _____ C:\WINDOWS\System32\Tasks\UbtFrameworkService
2016-12-02 03:38 - 2016-12-02 03:38 - 00002762 _____ C:\WINDOWS\System32\Tasks\BacKGroundAgent
2016-12-02 03:38 - 2016-12-02 03:38 - 00002534 _____ C:\WINDOWS\System32\Tasks\AcerCloud
2016-12-02 03:38 - 2016-12-02 03:38 - 00002328 _____ C:\WINDOWS\System32\Tasks\ACCBackgroundApplication
2016-12-02 03:38 - 2016-12-02 03:38 - 00002256 _____ C:\WINDOWS\System32\Tasks\Power Button
2016-12-02 03:38 - 2016-12-02 03:38 - 00002180 _____ C:\WINDOWS\System32\Tasks\Quick Access
2016-12-02 03:38 - 2016-12-02 03:38 - 00002042 _____ C:\WINDOWS\System32\Tasks\FubToolByPLD
2016-12-02 03:37 - 2016-12-02 03:37 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-12-02 03:35 - 2016-12-02 03:35 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-12-02 03:32 - 2016-12-02 03:42 - 00000000 ____D C:\Users\Gudrun
2016-12-02 03:32 - 2016-12-02 03:35 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Vorlagen
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Startmenü
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Netzwerkumgebung
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Lokale Einstellungen
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Eigene Dateien
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Druckumgebung
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Documents\Eigene Videos
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Documents\Eigene Musik
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Documents\Eigene Bilder
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\AppData\Local\Verlauf
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\AppData\Local\Anwendungsdaten
2016-12-02 03:32 - 2016-12-02 03:32 - 00000000 _SHDL C:\Users\Gudrun\Anwendungsdaten
2016-12-02 03:32 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-12-02 03:31 - 2016-12-02 03:31 - 01621874 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\system32\IntelSSTAPO
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\WINDOWS\system32\DAX2
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\ProgramData\rtkSSTSetting
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\Program Files\Realtek
2016-12-02 03:31 - 2016-12-02 03:31 - 00000000 ____D C:\Program Files\Elantech
2016-12-02 03:31 - 2016-06-03 01:29 - 03181209 _____ C:\WINDOWS\system32\Drivers\rtkSSTSetting.zip
2016-12-02 03:30 - 2016-12-04 23:11 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-12-02 03:30 - 2016-12-03 22:53 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-02 03:30 - 2016-12-02 19:41 - 00330480 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-12-02 03:30 - 2016-12-02 03:33 - 00000000 ____D C:\Program Files\Intel
2016-12-02 03:30 - 2016-12-02 03:30 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-12-02 03:30 - 2016-12-02 03:30 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-12-02 03:30 - 2016-12-02 03:30 - 00000000 ____D C:\Program Files\Common Files\Atheros
2016-12-02 03:30 - 2016-12-02 03:30 - 00000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2016-12-02 03:30 - 2016-04-07 05:36 - 00091136 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-12-02 03:30 - 2016-04-07 05:26 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2016-12-02 03:29 - 2016-12-02 03:40 - 00000000 ___DC C:\WINDOWS\Panther
2016-12-02 03:26 - 2016-12-02 03:26 - 06574592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 04148736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 03778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02747392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 02481768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02257104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 02049480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01990648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01853776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01847048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01365504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01362504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01343928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01061968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-12-02 03:26 - 2016-12-02 03:26 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00951904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00848736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00755656 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00691080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00640976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00602464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00498952 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00446896 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-12-02 03:26 - 2016-12-02 03:26 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00409952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-12-02 03:26 - 2016-12-02 03:26 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00396168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00313560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2016-12-02 03:26 - 2016-12-02 03:26 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2016-12-02 03:26 - 2016-12-02 03:26 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00121368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00108384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys
2016-12-02 03:26 - 2016-12-02 03:26 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2016-12-02 03:26 - 2016-12-02 03:26 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-12-02 03:26 - 2016-12-02 03:26 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 22563840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 22223968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 19415552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 19415040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 13441024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 13081600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 12349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 12175360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 08156080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 08127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 08075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07816544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 07792640 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07469056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 06657176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05384192 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 04557824 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 03287552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03116544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 03054080 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 02947072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02827864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 02750936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02748928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02708992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02678056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02512384 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02423296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 02360832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02290176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02276736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02107392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 02083840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01913344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01851696 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01609920 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01570672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01556712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01554944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01425000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-12-02 03:25 - 2016-12-02 03:25 - 01348608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01267504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01235296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 01176664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01066328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-12-02 03:25 - 2016-12-02 03:25 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00967168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-12-02 03:25 - 2016-12-02 03:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00940032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00939872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00908640 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00790760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00788624 _____ C:\WINDOWS\SysWOW64\locale.nls
2016-12-02 03:25 - 2016-12-02 03:25 - 00788624 _____ C:\WINDOWS\system32\locale.nls
2016-12-02 03:25 - 2016-12-02 03:25 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00749920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00742704 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00714592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00681304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00665768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00658272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00650240 _____ (Microsoft) C:\WINDOWS\system32\DbgModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00596832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00595296 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenterCPL.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00545936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2016-12-02 03:25 - 2016-12-02 03:25 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll


herrsocke 05.12.2016 16:06

Part 2
Code:

2016-12-02 03:25 - 2016-12-02 03:25 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00509280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00500064 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00461312 _____ (Microsoft) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00450392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00378720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-12-02 03:25 - 2016-12-02 03:25 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00292872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00283488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-12-02 03:25 - 2016-12-02 03:25 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00238056 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00232800 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_G18030.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingFolder.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00204288 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoplay.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS
2016-12-02 03:25 - 2016-12-02 03:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoplay.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DscCoreConfProv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00133472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chartv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmifw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthExt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-12-02 03:25 - 2016-12-02 03:25 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmifw.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00079200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00078688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetailsUpdate.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AddressParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsiwmi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetailsUpdate.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00063328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00057400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AddressParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00048992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactActivation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00044472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00041824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00036168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-12-02 03:25 - 2016-12-02 03:25 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\encapi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi_passthru.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stdole2.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb
2016-12-02 03:25 - 2016-12-02 03:25 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_IS2022.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\c_GSM7.DLL
2016-12-02 03:25 - 2016-12-02 03:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccessRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-12-02 03:25 - 2016-12-02 03:25 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2016-12-02 03:25 - 2016-12-02 03:25 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneutilRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-12-02 03:18 - 2016-12-02 03:18 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files\MSBuild
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-12-02 03:17 - 2016-12-02 03:17 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-12-02 03:17 - 2016-05-25 14:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 14:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 14:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-12-02 03:17 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-12-02 03:17 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-12-02 03:16 - 2016-12-02 03:16 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2016-12-02 03:16 - 2016-12-02 03:16 - 00199008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2016-12-02 01:04 - 2016-12-02 01:05 - 00263224 _____ C:\TDSSKiller.3.1.0.12_02.12.2016_01.04.54_log.txt
2016-12-02 00:40 - 2016-12-02 03:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Videos
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Programme
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-12-02 00:40 - 2016-12-02 00:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-12-02 00:40 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-12-02 00:40 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-12-02 00:30 - 2016-12-02 00:30 - 00000000 ____D C:\Program Files (x86)\ESET
2016-12-02 00:18 - 2016-12-02 00:18 - 00002192 _____ C:\Users\Gudrun\Downloads\Fixlog.txt
2016-12-02 00:02 - 2016-12-05 16:01 - 02419200 _____ (Farbar) C:\Users\Gudrun\Desktop\FRST64.exe
2016-12-02 00:02 - 2016-12-05 16:01 - 00000000 ____D C:\FRST
2016-12-02 00:02 - 2016-12-02 00:02 - 00000000 ____D C:\Users\Gudrun\AppData\Local\CrashDumps
2016-12-01 23:57 - 2016-12-01 23:58 - 00989854 _____ C:\TDSSKiller.3.1.0.12_01.12.2016_23.57.00_log.txt
2016-12-01 23:54 - 2016-12-02 03:33 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2016-12-01 23:54 - 2016-12-02 03:33 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-12-01 23:47 - 2016-12-01 23:47 - 00000000 ____D C:\Users\Gudrun\AppData\Local\NetworkTiles
2016-12-01 23:39 - 2016-12-04 22:20 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-12-01 23:39 - 2016-12-02 01:25 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-12-01 23:39 - 2016-12-02 00:40 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-12-01 23:38 - 2016-12-02 01:25 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-12-01 23:17 - 2016-12-02 03:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection
2016-12-01 23:16 - 2016-12-04 22:37 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-12-01 23:16 - 2016-12-01 23:38 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2016-12-01 21:54 - 2016-12-01 21:55 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-12-01 21:53 - 2016-12-01 21:53 - 141011376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-12-01 21:48 - 2016-07-01 04:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll
2016-12-01 21:47 - 2016-07-01 04:57 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2016-12-01 19:35 - 2016-12-01 19:40 - 00000000 ____D C:\Users\Gudrun\Desktop\Natur
2016-12-01 19:35 - 2016-12-01 19:35 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-12-01 18:05 - 2016-12-01 18:05 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Comms
2016-12-01 17:54 - 2016-12-01 17:54 - 00002340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-01 17:54 - 2016-12-01 17:54 - 00002328 _____ C:\Users\Public\Desktop\Internet.lnk
2016-12-01 17:53 - 2016-12-02 02:58 - 00001142 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-12-01 17:53 - 2016-12-02 00:19 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-12-01 17:53 - 2016-12-01 18:09 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Google
2016-12-01 17:53 - 2016-12-01 17:54 - 00000000 ____D C:\Program Files (x86)\Google
2016-12-01 17:51 - 2016-12-01 17:52 - 00000000 ____D C:\Users\Gudrun\AppData\Local\MicrosoftEdge
2016-12-01 17:50 - 2016-12-01 17:50 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Macromedia
2016-12-01 17:49 - 2016-12-01 17:49 - 00000000 ____D C:\Users\Public\App Explorer
2016-12-01 17:49 - 2016-12-01 17:49 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Intel Corporation
2016-12-01 17:49 - 2016-12-01 17:49 - 00000000 ____D C:\Users\Gudrun\AppData\Local\CareCenter
2016-12-01 17:48 - 2016-12-02 03:42 - 00002390 _____ C:\Users\Gudrun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-12-01 17:48 - 2016-12-02 03:42 - 00000000 ___RD C:\Users\Gudrun\OneDrive
2016-12-01 17:48 - 2016-12-01 19:17 - 00000000 ____D C:\Users\Gudrun\AppData\Local\clear.fi
2016-12-01 17:48 - 2016-12-01 17:48 - 00001333 _____ C:\Users\Gudrun\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\PicStream
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Skype
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\AppData\Local\AOP SDK
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\Users\Gudrun\AppData\Local\ActiveSync
2016-12-01 17:48 - 2016-12-01 17:48 - 00000000 ____D C:\ProgramData\Dashlane
2016-12-01 17:46 - 2016-12-03 22:53 - 00000000 __SHD C:\Users\Gudrun\IntelGraphicsProfiles
2016-12-01 17:46 - 2016-12-02 20:03 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Packages
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ___HD C:\ProgramData\O949
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Roaming\Adobe
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Local\VirtualStore
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Local\TileDataLayer
2016-12-01 17:46 - 2016-12-01 17:46 - 00000000 ____D C:\Users\Gudrun\AppData\Local\Publishers
2016-12-01 17:44 - 2016-12-01 17:44 - 00000000 ____D C:\WINDOWS\oem
2016-11-18 00:06 - 2016-11-18 00:06 - 00000000 ____D C:\WINDOWS\NAPP_Dism_Log
2016-11-17 17:10 - 2016-11-17 17:10 - 00001194 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dashlane.lnk
2016-11-17 17:10 - 2016-11-17 17:10 - 00000000 ___HD C:\ProgramData\{ED8D8B70-196F-4C4E-B1B5-3FDE44B8E688}
2016-11-17 17:10 - 2016-11-17 17:10 - 00000000 ____D C:\Program Files (x86)\Dashlane
2016-11-17 17:07 - 2016-12-01 19:27 - 00000000 ____D C:\ProgramData\Acer
2016-11-17 17:06 - 2016-12-01 19:20 - 00000000 ____D C:\Program Files (x86)\Acer
2016-11-17 17:06 - 2016-11-17 17:06 - 00001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-11-17 17:06 - 2016-11-17 17:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-17 17:06 - 2016-11-17 17:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-11-17 16:55 - 2016-11-17 16:55 - 00000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
2016-11-17 16:55 - 2016-11-17 16:55 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
2016-11-17 16:49 - 2016-12-02 03:35 - 00000000 ____D C:\WINDOWS\system32\ihvmanager
2016-11-17 16:49 - 2016-11-17 16:49 - 00000000 ____D C:\Program Files (x86)\Qualcomm Atheros
2016-11-17 16:48 - 2016-11-17 16:48 - 00016404 _____ C:\WINDOWS\system32\results.xml
2016-11-17 16:45 - 2016-11-17 16:46 - 00000000 ___HD C:\Intel
2016-11-17 16:45 - 2015-12-18 03:06 - 04330200 _____ (TODO: <Company name>) C:\WINDOWS\RtCRU64.exe
2016-11-17 16:45 - 2015-12-18 03:06 - 00769752 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsPer.sys
2016-11-17 16:45 - 2014-10-20 10:50 - 00083160 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll
2016-11-17 16:45 - 2014-01-27 06:39 - 09890008 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2016-11-17 16:42 - 2016-11-17 16:44 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-11-17 16:42 - 2016-06-03 01:29 - 72520720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2016-11-17 16:42 - 2016-06-03 01:29 - 14057256 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 13122584 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 12988352 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 10512448 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSSTAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 07172920 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 07096192 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 06402432 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 06264640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 06064046 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2016-11-17 16:42 - 2016-06-03 01:29 - 05804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2016-11-17 16:42 - 2016-06-03 01:29 - 05776968 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 05593624 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 05339552 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 05111040 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2016-11-17 16:42 - 2016-06-03 01:29 - 03299824 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03283248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03282544 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03199744 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 03181209 _____ C:\WINDOWS\system32\Drivers\rtkSSTsetting.dat
2016-11-17 16:42 - 2016-06-03 01:29 - 03096248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02895104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2016-11-17 16:42 - 2016-06-03 01:29 - 02825104 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02726416 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02477520 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02437760 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02190992 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02110600 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02060032 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 02050184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01965816 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01959608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01847888 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01780624 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01608128 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64APO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01591064 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01508936 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01435144 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01422928 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01382240 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01355616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01336544 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01334384 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01213664 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01186832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01166168 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01061120 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01023240 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 01003864 _____ (Nahimic Inc) C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00999856 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00965032 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00962056 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00931624 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00927424 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00923744 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00873472 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00743968 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00727440 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00716112 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00708312 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00689888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00678184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00677672 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00618192 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00589072 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.DLL
2016-11-17 16:42 - 2016-06-03 01:29 - 00574760 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00532384 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00524680 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00514528 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00504312 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00500560 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00472312 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00467168 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00450120 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00447728 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00447104 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00445400 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00441272 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00428232 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00416512 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00387320 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00381416 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00371456 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00366128 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00362056 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00360352 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00341152 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00341152 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00330568 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00327456 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00310424 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00272720 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00258872 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00253904 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00253872 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00252880 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00231920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00221968 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00214832 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00203848 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00192984 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00190936 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00190936 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00179600 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00166208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00158704 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00154368 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00151792 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00134208 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00118592 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00110984 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00105312 _____ C:\WINDOWS\system32\audioLibVc.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00090920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00088320 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00084616 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00075544 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2016-11-17 16:42 - 2016-06-03 01:29 - 00023696 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2016-11-17 16:42 - 2016-04-11 06:38 - 02838232 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2016-11-17 16:41 - 2016-12-02 03:35 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-11-17 16:41 - 2016-11-17 16:41 - 01829522 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-11-17 16:38 - 2016-11-17 16:46 - 00000000 ____D C:\Program Files (x86)\Intel
2016-11-17 16:35 - 2016-11-17 16:49 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-11-17 16:35 - 2016-11-17 16:45 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-11-17 16:35 - 2015-11-19 05:16 - 00935168 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2016-11-17 16:35 - 2015-11-19 05:16 - 00082544 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2016-11-17 16:34 - 2016-11-17 16:39 - 00000000 ____D C:\ProgramData\Intel
2016-11-17 15:39 - 2016-12-02 03:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools
2016-11-17 15:39 - 2016-11-17 15:39 - 00002585 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002581 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002560 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002502 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2016-11-17 15:39 - 2016-11-17 15:39 - 00002471 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-11-17 15:38 - 2016-12-01 18:06 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-11-17 15:38 - 2016-11-17 15:38 - 00000000 ____D C:\Program Files\Microsoft Office 15

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-12-04 23:21 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-12-04 22:23 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-12-03 22:59 - 2016-08-03 05:57 - 01539066 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-12-03 22:59 - 2016-07-16 23:51 - 00535336 _____ C:\WINDOWS\system32\perfh007.dat
2016-12-03 22:59 - 2016-07-16 23:51 - 00099276 _____ C:\WINDOWS\system32\perfc007.dat
2016-12-03 22:52 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-12-03 15:31 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\appcompat
2016-12-02 20:03 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF
2016-12-02 19:41 - 2016-08-03 05:49 - 00000000 ____D C:\ProgramData\McAfee
2016-12-02 19:36 - 2016-07-16 07:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-12-02 19:35 - 2015-10-30 07:28 - 00000000 ____D C:\Users\Default.migrated
2016-12-02 19:23 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-12-02 03:41 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-12-02 03:40 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
2016-12-02 03:40 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows NT
2016-12-02 03:40 - 2016-02-13 14:20 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-12-02 03:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-12-02 03:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Registration
2016-12-02 03:39 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-12-02 03:36 - 2016-07-16 12:47 - 00000000 __RHD C:\Users\Public\Libraries
2016-12-02 03:35 - 2016-08-03 05:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2016-12-02 03:35 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-12-02 03:35 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-12-02 03:33 - 2016-07-16 23:52 - 00000000 ____D C:\WINDOWS\OCR
2016-12-02 03:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\spool
2016-12-02 03:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-12-02 03:33 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-12-02 03:32 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-12-02 03:31 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-12-02 03:31 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-12-02 03:31 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-12-02 03:29 - 2016-07-16 12:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-12-02 03:27 - 2016-07-16 12:47 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ___RD C:\Program Files\Windows Defender
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\setup
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\es-MX
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Provisioning
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-12-02 03:27 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-12-02 03:27 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-12-02 03:27 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-12-02 03:17 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-12-02 03:17 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-12-02 03:09 - 2016-07-17 00:55 - 00000000 ___HD C:\$WINDOWS.~BT
2016-12-01 21:22 - 2015-10-30 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-12-01 21:22 - 2015-10-30 08:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-12-01 19:20 - 2016-08-03 06:34 - 00000000 ___HD C:\OEM
2016-12-01 17:49 - 2016-08-03 05:48 - 00000000 ____D C:\ProgramData\OEM
2016-11-17 17:12 - 2016-08-03 05:48 - 00000000 ____D C:\Program Files\Acer
2016-11-17 16:37 - 2016-08-03 05:48 - 00000000 ____D C:\ProgramData\Package Cache

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-12-02 03:31 - 2016-12-02 03:31 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2016-12-02 03:30

==================== Ende von FRST.txt ============================


herrsocke 05.12.2016 16:07

Addition.txt
Code:

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-12-2016
durchgeführt von Gudrun (05-12-2016 16:03:14)
Gestartet von C:\Users\Gudrun\Desktop
Windows 10 Home Version 1607 (X64) (2016-12-02 02:40:15)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-858045730-189694360-1164872201-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-858045730-189694360-1164872201-503 - Limited - Disabled)
Gast (S-1-5-21-858045730-189694360-1164872201-501 - Limited - Disabled)
Gudrun (S-1-5-21-858045730-189694360-1164872201-1001 - Administrator - Enabled) => C:\Users\Gudrun

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.07.2004 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.08.2003.3 - Acer Incorporated)
Acer Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3024 - Acer Incorporated)
Acer Configuration Manager (HKLM-x32\...\{414D554E-4453-454E-0201-000000016258}) (Version: 2.1.16258 - Acer)
Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2004 - Acer Incorporated)
Acer Quick Access (HKLM\...\{8BBF04F1-C68A-441C-B5EF-446EE9960EAF}) (Version: 2.01.3008 - Acer Incorporated)
Acer UEIP Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 3.02.3001 - Acer Incorporated)
AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.22.2001.0 - Acer Incorporated)
Booking.com Weblink (HKLM-x32\...\{617FC0E5-23D3-437D-9D19-6754E8287A79}) (Version: 1.16.0726 - Acer)
Dashlane Upgrade Service (HKLM-x32\...\Dashlane Upgrade Service) (Version: 2.1.12.0 - Dashlane, Inc.)
eBay Weblink (HKLM-x32\...\{7F3596EF-B661-43EE-A321-AD3C3EB9B525}) (Version: 1.16.0726 - Acer)
ELAN HIDI2C Filter Driver X64 13.6.5.2_WHQL (HKLM\...\Elantech) (Version: 13.6.5.2 - ELAN Microelectronic Corp.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.2.1183 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4390 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.1.1030 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.13 - Intel(R) Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{CCBE9F01-C2C3-469C-A508-2E23A7495E91}) (Version: 1.0.0.609 - Intel Corporation)
Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{1CF84962-50F8-48CA-9082-B70F3A02C686}) (Version: 17.0.0.611 - Kaspersky Lab)
Kaspersky Secure Connection (x32 Version: 17.0.0.611 - Kaspersky Lab) Hidden
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.7466.2038 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Firefox 45.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 45.0 (x86 en-US)) (Version: 45.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7426.1015 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10299 - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.191 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.21287 - Realtek Semiconduct Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7836 - Realtek Semiconductor Corp.)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {00392177-6784-4201-8E6B-BAC91A7FD34C} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe [2016-09-13] (Acer Incorporated)
Task: {07F59AE5-6782-43EA-BD3C-C306351C6A83} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2016-08-30] (Acer Incorporated)
Task: {1B277D05-4F77-4B0F-87B6-D80224F74345} - System32\Tasks\FubToolByPLD => C:\OEM\Preload\FubTool\FubTool.exe [2015-05-14] ()
Task: {29477E28-D284-4057-A35A-4F0C46B8E093} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-01] (Google Inc.)
Task: {2E655E6B-48B6-44DD-967D-4409F56D7C9C} - System32\Tasks\Microsoft\Office\Microsoft Office Touchless Attach Notification => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation)
Task: {35F47775-2C7C-43E4-AE12-28FD5976F2B6} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2016-09-13] (Acer Incorporated)
Task: {3D2AE36D-2C78-4B33-AAEE-F7A0E8646042} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [2016-06-24] ()
Task: {6AF9AF5F-F7C9-4CC4-B588-AA6B70665004} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2016-09-09] (Acer)
Task: {7114C4AA-FB53-465C-A785-EFA135ACABF0} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-01-14] (Intel(R) Corporation)
Task: {7389B057-00A8-4658-A254-2CCF0181197B} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"]
Task: {7C4C42E0-2850-4834-9405-8BABEE340C3D} - System32\Tasks\AcerCMUpdateTask2.1.16258 => C:\Program Files (x86)\Acer\Amundsen\2.1.16258\AWC.exe [2016-09-20] ()
Task: {8AC5190B-AA55-4091-A584-83D6E0CF1AE6} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2016-06-24] ()
Task: {C7B0C9A2-A52D-4C2F-802A-80D9D80A2313} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation)
Task: {DBC16A54-25FB-40A4-8B7B-B89F139C6F83} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-01] (Google Inc.)
Task: {E7CE31AC-E513-4239-B705-C2D14616AB5C} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-13] (TODO: <Company name>)
Task: {F8172B4B-7F28-46FC-998C-D6C816CB0565} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-04 20:26 - 2016-03-04 20:26 - 05570728 _____ () C:\WINDOWS\system32\IntelSSTAPO\ParameterService\libxml2-2.dll
2016-06-30 03:21 - 2016-04-07 05:26 - 00394224 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-12-02 03:25 - 2016-12-02 03:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-12-02 03:42 - 2016-12-02 03:42 - 01864384 _____ () C:\Users\Gudrun\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll
2016-11-17 17:24 - 2016-05-16 11:02 - 00111320 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-12-02 03:25 - 2016-12-02 03:25 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-06-24 18:54 - 2016-06-24 18:54 - 04644256 _____ () C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
2016-12-02 20:03 - 2016-12-02 20:03 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-12-02 20:03 - 2016-12-02 20:03 - 00178688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-12-02 20:03 - 2016-12-02 20:03 - 41609728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-12-02 03:42 - 2016-12-02 03:42 - 01383616 _____ () C:\Users\Gudrun\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll
2016-12-02 03:42 - 2016-12-02 03:42 - 00118976 _____ () C:\Users\Gudrun\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll
2016-08-15 18:03 - 2016-08-15 18:03 - 00202456 _____ () C:\Program Files (x86)\Acer\abPhoto\curllib.dll
2016-08-15 18:05 - 2016-08-15 18:05 - 00654000 _____ () C:\Program Files (x86)\Acer\abPhoto\sqlite3.dll
2016-08-15 18:05 - 2016-08-15 18:05 - 00641240 _____ () C:\Program Files (x86)\Acer\abPhoto\tag.dll
2016-08-15 18:04 - 2016-08-15 18:04 - 00119000 _____ () C:\Program Files (x86)\Acer\abPhoto\OpenLDAP.dll
2016-12-02 03:33 - 2016-12-02 03:33 - 00015064 _____ () C:\WINDOWS\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll
2016-08-30 15:09 - 2016-08-30 15:09 - 00013016 _____ () C:\Program Files (x86)\Acer\AOP Framework\ServiceInterface.dll
2016-08-30 15:05 - 2016-08-30 15:05 - 00277856 _____ () C:\Program Files (x86)\Acer\AOP Framework\libcurl.dll
2016-09-09 10:51 - 2016-09-09 10:51 - 00202456 _____ () C:\Program Files (x86)\Acer\Acer Portal\curllib.dll
2016-09-09 10:51 - 2016-09-09 10:51 - 00119000 _____ () C:\Program Files (x86)\Acer\Acer Portal\OpenLDAP.dll
2016-02-11 17:47 - 2016-02-11 17:47 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2015-10-30 08:24 - 2015-10-30 08:21 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-858045730-189694360-1164872201-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Gudrun\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{ff7e7bd7-8a6d-43d1-a69a-14a95242d099}.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => LPort=139
FirewallRules: [{1ABFCD15-FFD4-4CC8-9EF5-0AF7298234F4}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{8530A612-6D88-4835-BBBD-F8568BDB0E43}] => C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{27E6CF95-A83C-4897-B7F9-A5B2243192CB}] => C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{20963FC8-6978-4DE0-A5A7-F6BA7DFAB4FC}] => C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{D763DC77-D1A2-42EF-B6C0-B6B32B3033FB}] => C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{D1F54B71-9858-483F-B4E6-4A5A59730C66}] => C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{07B99B8E-7A09-4B38-919F-EE0D7017FFB6}] => C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{B08B1ECF-7655-486A-A3A7-6EE35413E676}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{267A7BFD-7A4C-4E30-BD35-D6ABF6366A12}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BA303782-AF6D-443B-9D57-FEF8BDBDB97F}] => C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe

==================== Wiederherstellungspunkte =========================

02-12-2016 19:22:32 Windows Update
02-12-2016 20:44:33 JRT Pre-Junkware Removal

==================== Fehlerhafte Geräte im Gerätemanager =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (12/05/2016 12:09:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/04/2016 11:29:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/04/2016 10:54:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/04/2016 10:24:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/03/2016 11:07:59 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "c:\program files (x86)\eset\eset online scanner\ESETSmartInstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile .
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_42191651c6827bb3.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_89c64d28dafea4b9.manifest.

Error: (12/03/2016 10:59:52 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.

Error: (12/02/2016 08:44:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.14393.82, Zeitstempel: 0x57a55dc6
Name des fehlerhaften Moduls: CoreUIComponents.dll, Version: 0.0.0.0, Zeitstempel: 0x57dac4df
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000006866a
ID des fehlerhaften Prozesses: 0x2374
Startzeit der fehlerhaften Anwendung: 0x01d24cceefadfb33
Pfad der fehlerhaften Anwendung: C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\CoreUIComponents.dll
Berichtskennung: f0f9f5fd-ce9f-4f0e-9c3e-a408c544d6d7
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel

Error: (12/02/2016 08:44:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (12/02/2016 08:31:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-76VTFU1F)
Description: Bei der Aktivierung der App „Microsoft.WindowsMaps_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (12/02/2016 08:28:20 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: LAPTOP-76VTFU1F)
Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.14393.447_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte.


Systemfehler:
=============
Error: (12/05/2016 12:43:51 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/03/2016 11:37:41 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/03/2016 11:05:31 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-76VTFU1F)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "LAPTOP-76VTFU1F\Gudrun" (SID: S-1-5-21-858045730-189694360-1164872201-1001) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{9E175B6D-F52A-11D8-B9A5-505054503030}
 und der APPID
{9E175B9C-F52A-11D8-B9A5-505054503030}
 im Anwendungscontainer "Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe" (SID: S-1-15-2-3624051433-2125758914-1423191267-1740899205-1073925389-3782572162-737981194) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/03/2016 10:53:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/03/2016 10:53:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 und der APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/03/2016 10:53:13 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/03/2016 10:52:52 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-76VTFU1F)
Description: Der Server "{9BA05972-F6A8-11CF-A442-00A0C90A8F39}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (12/03/2016 10:52:52 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-76VTFU1F)
Description: Der Server "{9BA05972-F6A8-11CF-A442-00A0C90A8F39}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (12/03/2016 03:48:19 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (12/02/2016 09:55:19 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.


==================== Speicherinformationen ===========================

Prozessor: Intel(R) Core(TM) i3-6006U CPU @ 2.00GHz
Prozentuale Nutzung des RAM: 59%
Installierter physikalischer RAM: 3969.9 MB
Verfügbarer physikalischer RAM: 1595.17 MB
Summe virtueller Speicher: 5377.9 MB
Verfügbarer virtueller Speicher: 2580.09 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:237.36 GB) (Free:187.53 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: B1CFBAD7)

Partition: GPT.

==================== Ende von Addition.txt ============================


cosinus 05.12.2016 16:23

Okay, dann Kontrollscans mit (1) MBAM, (2) ESET und (3) SecurityCheck bitte:


1. Schritt: MBAM

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.




2. Schritt: ESET

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset




3. Schritt: SecurityCheck

Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

herrsocke 05.12.2016 18:59

Alles klar hier sind die logs:

mbam.txt
Code:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlaufdatum: 05.12.2016
Suchlaufzeit: 18:08
Protokolldatei: neulog.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.12.05.11
Rootkit-Datenbank: v2016.11.20.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Gudrun

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 294776
Abgelaufene Zeit: 3 Min., 18 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Dateien: 0
(keine bösartigen Elemente erkannt)

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)

Eset log

Code:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=f1901b9618b3fc48996233df835731c3
# end=init
# utc_time=2016-12-01 11:30:57
# local_time=2016-12-02 12:30:57 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT
Update Init
Update Download
Update Finalize
Updated modules version: 31595
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=f1901b9618b3fc48996233df835731c3
# end=updated
# utc_time=2016-12-01 11:32:51
# local_time=2016-12-02 12:32:51 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=f1901b9618b3fc48996233df835731c3
# engine=31595
# end=finished
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2016-12-02 12:00:31
# local_time=2016-12-02 01:00:31 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1='*McAfee*'
# compatibility_mode=5131 16777214 100 97 25819 65567817 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 3986 34450974 0 0
# scanned=234090
# found=0
# cleaned=0
# scan_time=1659
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=f1901b9618b3fc48996233df835731c3
# end=init
# utc_time=2016-12-02 12:09:14
# local_time=2016-12-02 01:09:14 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT
Update Init
Update Download
Update Finalize
Updated modules version: 31633
Update Init
Update Download
esets_scanner_update returned -1 esets_gle=53251
Update Finalize
Updated modules version: 31633


checkup.txt
Code:

Results of screen317's Security Check version 1.009 
  x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
Windows Defender 
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 Mozilla Firefox (45.0)
 Google Chrome (54.0.2840.99)
 Google Chrome (SetupMetrics...)
````````Process Check: objlist.exe by Laurent```````` 
 Windows Defender MSMpEng.exe
 Windows Defender MSASCuiL.exe 
 Windows Defender MpCmdRun.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````

Liebe Grüße

cosinus 05.12.2016 23:04

Zitat:

Mozilla Firefox (45.0)
Firefox umgehend updaten.
Was ist noch an Problemen offen?


Alle Zeitangaben in WEZ +1. Es ist jetzt 00:36 Uhr.

Copyright ©2000-2026, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19