Advertisement
Guest User

OTL Log

a guest
Jun 18th, 2015
436
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 188.49 KB | None | 0 0
  1. OTL logfile created on: 16.06.2015 20:33:49 - Run 1
  2. OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Stephanie\Downloads
  3. 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
  4. Internet Explorer (Version = 9.11.9600.17843)
  5. Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
  6.  
  7. 3,92 Gb Total Physical Memory | 1,63 Gb Available Physical Memory | 41,49% Memory free
  8. 7,83 Gb Paging File | 5,24 Gb Available in Paging File | 66,84% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
  12. Drive C: | 678,88 Gb Total Space | 610,70 Gb Free Space | 89,96% Space Free | Partition Type: NTFS
  13. Drive E: | 19,53 Gb Total Space | 4,93 Gb Free Space | 25,26% Space Free | Partition Type: NTFS
  14. Drive Y: | 458,33 Gb Total Space | 105,81 Gb Free Space | 23,09% Space Free | Partition Type: NTFS
  15. Drive Z: | 458,33 Gb Total Space | 105,81 Gb Free Space | 23,09% Space Free | Partition Type: NTFS
  16.  
  17. Computer Name: STEPHANIE-LAP | User Name: Stephanie | Logged in as Administrator.
  18. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
  19. Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
  20.  
  21. [color=#E56717]========== Processes (SafeList) ==========[/color]
  22.  
  23. PRC - [2015.06.16 20:33:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Stephanie\Downloads\OTL.exe
  24. PRC - [2015.06.01 13:12:22 | 017,905,424 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe
  25. PRC - [2015.06.01 13:12:22 | 005,495,056 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
  26. PRC - [2015.06.01 13:12:22 | 005,296,400 | ---- | M] (TeamViewer GmbH) -- c:\program files (x86)\teamviewer\TeamViewer_Desktop.exe
  27. PRC - [2015.06.01 12:50:06 | 000,229,136 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\tv_w32.exe
  28. PRC - [2015.05.26 03:12:38 | 000,376,944 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  29. PRC - [2015.05.01 11:17:04 | 001,772,672 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
  30. PRC - [2015.05.01 11:16:10 | 001,394,816 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
  31. PRC - [2015.03.07 00:22:00 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  32. PRC - [2015.03.01 16:19:42 | 005,946,568 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\ARSM\arsm.exe
  33. PRC - [2015.03.01 16:19:24 | 003,199,984 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\service_process.exe
  34. PRC - [2015.03.01 16:17:58 | 011,353,952 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\BackupAndRecovery\mms.exe
  35. PRC - [2015.03.01 16:16:22 | 001,514,128 | ---- | M] (Acronis) -- C:\Program Files (x86)\Acronis\TrayMonitor\TrayMonitor.exe
  36. PRC - [2015.03.01 16:16:14 | 001,845,328 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\act.exe
  37. PRC - [2015.03.01 16:12:14 | 000,404,208 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
  38. PRC - [2014.12.23 17:50:28 | 000,193,400 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe
  39. PRC - [2014.12.23 17:49:32 | 000,192,160 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe
  40. PRC - [2014.03.20 11:43:48 | 000,398,296 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  41. PRC - [2014.03.20 11:43:46 | 000,154,584 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
  42. PRC - [2014.03.20 11:43:46 | 000,131,544 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
  43. PRC - [2014.02.11 13:22:26 | 002,055,008 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\Agent\agent.exe
  44. PRC - [2013.12.03 09:09:38 | 000,267,224 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
  45. PRC - [2013.11.01 15:46:24 | 001,706,744 | ---- | M] (IVT Corporation) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
  46. PRC - [2013.09.10 17:18:46 | 001,344,312 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
  47. PRC - [2013.08.30 21:18:18 | 000,287,592 | ---- | M] (Intel Corporation) -- C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
  48. PRC - [2013.08.30 21:18:16 | 000,015,720 | ---- | M] (Intel Corporation) -- C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
  49. PRC - [2013.08.05 09:49:42 | 000,111,576 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
  50. PRC - [2013.04.26 10:25:54 | 000,292,848 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
  51. PRC - [2013.01.22 11:06:48 | 001,104,608 | ---- | M] (Acronis) -- C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
  52. PRC - [2012.08.31 10:32:14 | 000,452,272 | ---- | M] (CANON INC.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
  53. PRC - [2012.03.05 13:38:38 | 000,035,200 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
  54.  
  55.  
  56. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  57.  
  58. MOD - [2015.06.10 17:22:05 | 001,071,104 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servf73e6522#\8d17de4cf6bd55506c509502178d2c20\System.ServiceModel.Web.ni.dll
  59. MOD - [2015.06.10 17:22:03 | 000,788,992 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\9d31dc037429437307aacdbcb88bab3c\System.ServiceModel.Internals.ni.dll
  60. MOD - [2015.06.10 17:21:58 | 019,547,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\a78078ff6ff0c28ef3bf65bd84e193f0\System.ServiceModel.ni.dll
  61. MOD - [2015.06.10 17:21:44 | 002,803,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\ad1a5e8488b493088c4317191604dc81\System.Runtime.Serialization.ni.dll
  62. MOD - [2015.06.10 17:21:36 | 002,964,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\dd7948371a8babd1bc4291924ec94d05\System.IdentityModel.ni.dll
  63. MOD - [2015.06.10 17:20:40 | 000,118,272 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\6e7ce9401fda1718a4b6e3a27e8de909\SMDiagnostics.ni.dll
  64. MOD - [2015.06.10 17:03:22 | 001,873,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\b743aed31731aa473e125bb63f43b3f4\System.Xaml.ni.dll
  65. MOD - [2015.06.10 17:03:19 | 012,897,280 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\02e0d9af050d6a1af047b62b7cd9f0f2\System.Windows.Forms.ni.dll
  66. MOD - [2015.06.10 17:03:16 | 007,787,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\a4066040e82329538bec1a194a222d93\System.Xml.ni.dll
  67. MOD - [2015.06.10 17:03:16 | 006,982,656 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\c61bafa9d029e3f2bf83bd5af3f1f5ac\System.Core.ni.dll
  68. MOD - [2015.06.10 17:03:10 | 001,639,936 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\53d0b6fa2fc28f7d50f84999fc2a1bbf\System.Drawing.ni.dll
  69. MOD - [2015.06.10 17:03:10 | 000,967,680 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\908075c4922acdf834c67ac802814c9d\System.Configuration.ni.dll
  70. MOD - [2015.06.10 17:03:09 | 010,069,504 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\d18e2115a3270f89663fce831547f534\System.ni.dll
  71. MOD - [2015.06.10 11:03:38 | 017,207,296 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d1265d6159ea876f9d63ea4c1361b587\mscorlib.ni.dll
  72. MOD - [2015.03.01 16:16:46 | 000,329,672 | ---- | M] () -- C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\events_trace.dll
  73. MOD - [2015.03.01 16:16:46 | 000,287,800 | ---- | M] () -- C:\Program Files (x86)\Common Files\Acronis\BackupAndRecovery\Common\fnls.dll
  74. MOD - [2014.12.23 16:54:24 | 000,608,040 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll
  75. MOD - [2014.12.23 16:54:24 | 000,502,056 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll
  76. MOD - [2014.12.23 16:54:24 | 000,338,216 | ---- | M] () -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com\nponlinebanking.dll
  77. MOD - [2013.08.05 15:48:08 | 000,016,856 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
  78. MOD - [2013.08.05 09:49:47 | 000,627,672 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
  79. MOD - [2013.01.22 10:30:40 | 000,013,120 | ---- | M] () -- C:\Program Files (x86)\Common Files\Acronis\TibMounter\icudt38.dll
  80.  
  81.  
  82. [color=#E56717]========== Services (SafeList) ==========[/color]
  83.  
  84. SRV:[b]64bit:[/b] - [2015.05.25 20:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
  85. SRV:[b]64bit:[/b] - [2015.05.22 20:47:34 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
  86. SRV:[b]64bit:[/b] - [2015.03.19 21:02:14 | 000,345,864 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
  87. SRV:[b]64bit:[/b] - [2014.03.30 19:25:00 | 008,574,096 | ---- | M] () [Auto | Running] -- C:\Program Files\Siber Systems\GoodSync\Gs-Server.exe -- (GsServer)
  88. SRV:[b]64bit:[/b] - [2013.08.01 08:03:12 | 000,032,768 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\valWBFPolicyService.exe -- (valWBFPolicyService)
  89. SRV:[b]64bit:[/b] - [2013.07.23 11:28:56 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
  90. SRV:[b]64bit:[/b] - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
  91. SRV - [2015.06.10 22:25:29 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
  92. SRV - [2015.06.01 13:12:22 | 005,495,056 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe -- (TeamViewer)
  93. SRV - [2015.05.26 03:12:49 | 000,148,080 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
  94. SRV - [2015.05.21 07:50:40 | 001,272,560 | ---- | M] (Disc Soft Ltd) [On_Demand | Stopped] -- C:\Programme\DAEMON Tools Lite\DiscSoftBusService.exe -- (Disc Soft Lite Bus Service)
  95. SRV - [2015.05.01 11:17:04 | 001,772,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
  96. SRV - [2015.05.01 11:16:10 | 001,394,816 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
  97. SRV - [2015.04.14 09:36:30 | 001,080,120 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
  98. SRV - [2015.03.19 21:02:18 | 000,280,840 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
  99. SRV - [2015.03.07 00:22:00 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
  100. SRV - [2015.03.01 16:19:42 | 005,946,568 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Acronis\ARSM\arsm.exe -- (ARSM)
  101. SRV - [2015.03.01 16:17:58 | 011,353,952 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Acronis\BackupAndRecovery\mms.exe -- (MMS)
  102. SRV - [2015.03.01 16:12:08 | 001,189,720 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc)
  103. SRV - [2015.02.18 20:11:32 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
  104. SRV - [2014.12.23 17:50:28 | 000,193,400 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe -- (AVP15.0.2)
  105. SRV - [2014.08.21 20:42:40 | 000,093,184 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service)
  106. SRV - [2014.04.11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
  107. SRV - [2014.03.21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
  108. SRV - [2014.03.20 11:43:48 | 000,398,296 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
  109. SRV - [2014.03.20 11:43:46 | 000,154,584 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
  110. SRV - [2014.03.20 11:43:46 | 000,131,544 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe -- (Intel(R)
  111. SRV - [2014.02.11 13:22:26 | 002,055,008 | ---- | M] (Acronis) [Auto | Running] -- C:\Program Files (x86)\Common Files\Acronis\Agent\agent.exe -- (AcronisAgent)
  112. SRV - [2014.01.31 15:42:00 | 000,887,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Programme\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
  113. SRV - [2014.01.23 08:04:54 | 005,132,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc)
  114. SRV - [2014.01.23 08:04:54 | 000,178,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose64)
  115. SRV - [2014.01.17 10:06:14 | 000,174,368 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe -- (iumsvc)
  116. SRV - [2013.12.05 01:32:36 | 000,340,480 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Programme\IDT\WDM\stacsv64.exe -- (STacSV)
  117. SRV - [2013.11.01 15:48:12 | 000,145,656 | ---- | M] (IVT Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe -- (BsHelpCS)
  118. SRV - [2013.11.01 15:46:24 | 001,706,744 | ---- | M] (IVT Corporation) [Auto | Running] -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe -- (BlueSoleilCS)
  119. SRV - [2013.10.23 11:30:36 | 000,054,976 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Programme\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe -- (intelsba)
  120. SRV - [2013.10.14 11:29:40 | 000,087,552 | ---- | M] (Softex Inc.) [Auto | Running] -- C:\Programme\Hewlett-Packard\SimplePass\OmniServ.exe -- (omniserv)
  121. SRV - [2013.10.14 11:23:20 | 000,109,568 | ---- | M] () [Auto | Running] -- C:\Programme\Hewlett-Packard\SimplePass\cachesrvr.exe -- (Cachedrv server)
  122. SRV - [2013.08.30 21:18:16 | 000,015,720 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Programme\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
  123. SRV - [2012.03.05 13:38:38 | 000,035,200 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
  124.  
  125.  
  126. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  127.  
  128. DRV:[b]64bit:[/b] - [2015.06.16 20:34:42 | 000,136,408 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
  129. DRV:[b]64bit:[/b] - [2015.06.10 22:46:18 | 000,030,264 | ---- | M] (Disc Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtlitescsibus.sys -- (dtlitescsibus)
  130. DRV:[b]64bit:[/b] - [2015.06.10 19:24:57 | 001,119,672 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tib.sys -- (tib)
  131. DRV:[b]64bit:[/b] - [2015.06.10 19:24:57 | 000,183,224 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tib_mounter.sys -- (tib_mounter)
  132. DRV:[b]64bit:[/b] - [2015.06.10 19:24:54 | 000,312,096 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\snapman.sys -- (snapman)
  133. DRV:[b]64bit:[/b] - [2015.06.10 19:24:53 | 000,137,504 | ---- | M] (Acronis International GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fltsrv.sys -- (fltsrv)
  134. DRV:[b]64bit:[/b] - [2015.06.10 12:59:26 | 000,285,280 | ---- | M] (Acronis) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\afcdp.sys -- (afcdp)
  135. DRV:[b]64bit:[/b] - [2015.05.18 22:16:32 | 000,842,440 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
  136. DRV:[b]64bit:[/b] - [2015.05.18 22:16:32 | 000,056,008 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\kldisk.sys -- (kldisk)
  137. DRV:[b]64bit:[/b] - [2015.04.14 09:37:56 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
  138. DRV:[b]64bit:[/b] - [2015.04.14 09:37:42 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
  139. DRV:[b]64bit:[/b] - [2015.03.19 21:01:58 | 004,888,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
  140. DRV:[b]64bit:[/b] - [2014.11.28 18:19:40 | 000,151,240 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klflt.sys -- (klflt)
  141. DRV:[b]64bit:[/b] - [2014.11.22 14:12:38 | 000,077,000 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klwtp.sys -- (Klwtp)
  142. DRV:[b]64bit:[/b] - [2014.11.10 17:48:04 | 000,181,960 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kneps.sys -- (kneps)
  143. DRV:[b]64bit:[/b] - [2014.10.30 04:22:16 | 000,030,920 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klkbdflt.sys -- (klkbdflt)
  144. DRV:[b]64bit:[/b] - [2014.10.22 21:13:14 | 000,245,960 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klhk.sys -- (klhk)
  145. DRV:[b]64bit:[/b] - [2014.10.10 17:02:54 | 000,030,920 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6)
  146. DRV:[b]64bit:[/b] - [2014.10.09 12:31:40 | 000,057,032 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kltdi.sys -- (kltdi)
  147. DRV:[b]64bit:[/b] - [2014.03.31 10:47:10 | 000,468,576 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (kl1)
  148. DRV:[b]64bit:[/b] - [2014.03.20 11:43:46 | 000,118,272 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
  149. DRV:[b]64bit:[/b] - [2013.12.30 13:06:32 | 000,450,520 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
  150. DRV:[b]64bit:[/b] - [2013.12.05 01:32:36 | 000,551,936 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
  151. DRV:[b]64bit:[/b] - [2013.12.02 18:36:26 | 001,204,424 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtbth.sys -- (rtbth)
  152. DRV:[b]64bit:[/b] - [2013.11.26 00:25:26 | 002,439,368 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
  153. DRV:[b]64bit:[/b] - [2013.10.25 16:45:26 | 000,537,328 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
  154. DRV:[b]64bit:[/b] - [2013.10.25 16:45:24 | 000,034,544 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
  155. DRV:[b]64bit:[/b] - [2013.10.15 03:49:25 | 000,041,192 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
  156. DRV:[b]64bit:[/b] - [2013.10.02 04:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
  157. DRV:[b]64bit:[/b] - [2013.09.26 22:44:14 | 000,444,632 | ---- | M] (Realsil Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPer.sys -- (RTSPER)
  158. DRV:[b]64bit:[/b] - [2013.08.30 21:18:02 | 000,644,968 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
  159. DRV:[b]64bit:[/b] - [2013.08.30 21:18:02 | 000,028,008 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorF.sys -- (iaStorF)
  160. DRV:[b]64bit:[/b] - [2013.08.26 22:08:42 | 000,883,928 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
  161. DRV:[b]64bit:[/b] - [2013.08.08 16:11:00 | 000,029,280 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klmouflt.sys -- (klmouflt)
  162. DRV:[b]64bit:[/b] - [2013.07.23 11:28:56 | 000,043,320 | ---- | M] (Hewlett-Packard) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
  163. DRV:[b]64bit:[/b] - [2013.07.23 11:28:56 | 000,030,520 | ---- | M] (Hewlett-Packard) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
  164. DRV:[b]64bit:[/b] - [2013.04.26 18:18:00 | 000,054,064 | ---- | M] (Ralink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BtL2caScoIf.sys -- (BthL2caScoIfSrv)
  165. DRV:[b]64bit:[/b] - [2013.04.26 10:24:58 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
  166. DRV:[b]64bit:[/b] - [2013.04.26 10:24:56 | 000,786,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
  167. DRV:[b]64bit:[/b] - [2013.04.26 10:24:56 | 000,368,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
  168. DRV:[b]64bit:[/b] - [2013.04.12 14:34:48 | 000,015,456 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klpd.sys -- (klpd)
  169. DRV:[b]64bit:[/b] - [2013.03.25 11:03:44 | 000,049,584 | ---- | M] (Ralink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IvtUrbBtFlt.sys -- (btUrbFilterDrv)
  170. DRV:[b]64bit:[/b] - [2013.01.14 20:10:52 | 000,238,288 | ---- | M] (Kaspersky Lab UK Ltd) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\cm_km_w.sys -- (cm_km_w)
  171. DRV:[b]64bit:[/b] - [2012.08.23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
  172. DRV:[b]64bit:[/b] - [2012.08.23 16:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
  173. DRV:[b]64bit:[/b] - [2012.06.15 11:22:02 | 000,023,136 | ---- | M] (IVT Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BtAudioBus.sys -- (BtAudioBusSrv)
  174. DRV:[b]64bit:[/b] - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
  175. DRV:[b]64bit:[/b] - [2011.12.26 21:37:42 | 000,090,608 | ---- | M] (CyberLink) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\CLVirtualDrive.sys -- (CLVirtualDrive)
  176. DRV:[b]64bit:[/b] - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
  177. DRV:[b]64bit:[/b] - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
  178. DRV:[b]64bit:[/b] - [2010.11.21 05:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
  179. DRV:[b]64bit:[/b] - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
  180. DRV:[b]64bit:[/b] - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
  181. DRV:[b]64bit:[/b] - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
  182. DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
  183. DRV:[b]64bit:[/b] - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
  184. DRV:[b]64bit:[/b] - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
  185. DRV:[b]64bit:[/b] - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
  186. DRV:[b]64bit:[/b] - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
  187. DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
  188.  
  189.  
  190. [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  191.  
  192.  
  193. [color=#E56717]========== Internet Explorer ==========[/color]
  194.  
  195. IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  196. IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  197. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
  198. IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  199. IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  200.  
  201.  
  202. IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  203.  
  204. IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  205.  
  206.  
  207.  
  208. IE - HKU\S-1-5-21-3125861014-1246434094-1397525353-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  209. IE - HKU\S-1-5-21-3125861014-1246434094-1397525353-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
  210. IE - HKU\S-1-5-21-3125861014-1246434094-1397525353-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  211.  
  212.  
  213. [color=#E56717]========== FireFox ==========[/color]
  214.  
  215. FF - prefs.js..browser.search.countryCode: "DE"
  216. FF - prefs.js..browser.search.region: "DE"
  217. FF - prefs.js..browser.startup.homepage: "google.de"
  218. FF - prefs.js..extensions.enabledAddons: content_blocker_663BE84DBCC949E88C7600F63CA7F098%40kaspersky.com:4.5.1.379
  219. FF - prefs.js..extensions.enabledAddons: virtual_keyboard_07402848C2F6470194F131B0F3DE025E%40kaspersky.com:4.5.1.379
  220. FF - prefs.js..extensions.enabledAddons: online_banking_08806E753BE44495B44E90AA2513BDC5%40kaspersky.com:4.5.1.379
  221. FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:38.0.5
  222.  
  223.  
  224. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
  225. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
  226. FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll (Adobe Systems, Inc.)
  227. FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
  228. FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
  229. FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
  230. FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.45.2: C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
  231. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2: C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll (Oracle Corporation)
  232. FF - HKLM\Software\MozillaPlugins\@kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015.06.10 22:40:41 | 000,000,000 | ---D | M]
  233. FF - HKLM\Software\MozillaPlugins\@kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015.06.10 22:40:42 | 000,000,000 | ---D | M]
  234. FF - HKLM\Software\MozillaPlugins\@kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015.06.10 22:40:44 | 000,000,000 | ---D | M]
  235. FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
  236. FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
  237. FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
  238. FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
  239.  
  240. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015.06.10 22:40:41 | 000,000,000 | ---D | M]
  241. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015.06.10 22:40:44 | 000,000,000 | ---D | M]
  242. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\online_banking_08806E753BE44495B44E90AA2513BDC5@kaspersky.com: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015.06.10 22:40:42 | 000,000,000 | ---D | M]
  243. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
  244. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
  245. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 31.7.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components
  246. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 31.7.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
  247.  
  248. [2015.06.10 22:37:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Stephanie\AppData\Roaming\mozilla\Extensions
  249. [2015.06.11 21:52:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Stephanie\AppData\Roaming\mozilla\Firefox\Profiles\x8p47qwx.default\extensions
  250. [2015.06.10 22:37:32 | 000,946,636 | ---- | M] () (No name found) -- C:\Users\Stephanie\AppData\Roaming\mozilla\firefox\profiles\x8p47qwx.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
  251. [2015.06.11 00:28:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
  252. [2015.06.10 22:37:04 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  253. [2015.06.10 22:40:41 | 000,000,000 | ---D | M] (Modul zum Sperren von gefährlichen Webseiten) -- C:\PROGRAM FILES (X86)\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 15.0.2\FFEXT\CONTENT_BLOCKER@KASPERSKY.COM
  254. [2015.06.10 22:40:42 | 000,000,000 | ---D | M] (Sicherer Zahlungsverkehr) -- C:\PROGRAM FILES (X86)\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 15.0.2\FFEXT\ONLINE_BANKING@KASPERSKY.COM
  255. [2015.06.10 22:40:44 | 000,000,000 | ---D | M] (Virtuelle Tastatur) -- C:\PROGRAM FILES (X86)\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 15.0.2\FFEXT\VIRTUAL_KEYBOARD@KASPERSKY.COM
  256.  
  257. O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
  258. O2:[b]64bit:[/b] - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Programme\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
  259. O2:[b]64bit:[/b] - BHO: (Virtual Keyboard Plugin) - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  260. O2:[b]64bit:[/b] - BHO: (Content Blocker Plugin) - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  261. O2:[b]64bit:[/b] - BHO: (Safe Money Plugin) - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  262. O2:[b]64bit:[/b] - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
  263. O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programme\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
  264. O2:[b]64bit:[/b] - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
  265. O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
  266. O2 - BHO: (Virtual Keyboard Plugin) - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  267. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll (Oracle Corporation)
  268. O2 - BHO: (Content Blocker Plugin) - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  269. O2 - BHO: (Safe Money Plugin) - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  270. O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
  271. O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation)
  272. O2 - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation)
  273. O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll (Oracle Corporation)
  274. O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
  275. O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Programme\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
  276. O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
  277. O4:[b]64bit:[/b] - HKLM..\Run: [Acronis Scheduler2 Service] C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis)
  278. O4:[b]64bit:[/b] - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)
  279. O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe ()
  280. O4:[b]64bit:[/b] - HKLM..\Run: [SysTrayApp] C:\Programme\IDT\WDM\sttray64.exe (IDT, Inc.)
  281. O4:[b]64bit:[/b] - HKLM..\Run: [TrayMonitor.exe] C:\Program Files (x86)\Acronis\TrayMonitor\TrayMonitor.exe (Acronis)
  282. O4 - HKLM..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe (Hewlett-Packard Company)
  283. O4 - HKLM..\Run: [AcronisTibMounterMonitor] C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe (Acronis)
  284. O4 - HKLM..\Run: [BackupAndRecoveryMonitor.exe] C:\Program Files (x86)\Acronis\BackupAndRecovery\BackupAndRecoveryMonitor.exe (Acronis)
  285. O4 - HKLM..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.)
  286. O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
  287. O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
  288. O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
  289. O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
  290. O4 - HKU\S-1-5-21-3125861014-1246434094-1397525353-1000..\Run: [GoodSync] C:\Program Files\Siber Systems\GoodSync\GoodSync.exe ()
  291. O4 - HKU\S-1-5-21-3125861014-1246434094-1397525353-1002..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
  292. O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
  293. O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
  294. O4 - HKU\S-1-5-21-3125861014-1246434094-1397525353-1002..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
  295. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
  296. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
  297. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36
  298. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
  299. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
  300. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
  301. O8:[b]64bit:[/b] - Extra context menu item: An OneNote s&enden - C:\Programme\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
  302. O8:[b]64bit:[/b] - Extra context menu item: Nach Microsoft E&xcel exportieren - C:\Programme\Microsoft Office\Office15\EXCEL.EXE (Microsoft Corporation)
  303. O8 - Extra context menu item: An OneNote s&enden - C:\Programme\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
  304. O8 - Extra context menu item: Nach Microsoft E&xcel exportieren - C:\Programme\Microsoft Office\Office15\EXCEL.EXE (Microsoft Corporation)
  305. O9:[b]64bit:[/b] - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
  306. O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
  307. O9:[b]64bit:[/b] - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
  308. O9:[b]64bit:[/b] - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
  309. O9:[b]64bit:[/b] - Extra Button: Virtuelle Tastatur - {5547CE1F-74E9-41E5-9CBF-5211ECC37341} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\x64\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  310. O9:[b]64bit:[/b] - Extra Button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
  311. O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
  312. O9:[b]64bit:[/b] - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
  313. O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
  314. O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
  315. O9 - Extra Button: Virtuelle Tastatur - {5547CE1F-74E9-41E5-9CBF-5211ECC37341} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\IEExt\ie_plugin.dll (Kaspersky Lab ZAO)
  316. O9 - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
  317. O13[b]64bit:[/b] - gopher Prefix: missing
  318. O13 - gopher Prefix: missing
  319. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
  320. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8F0543D1-0A6C-43B9-A0D2-CAAE7AA9F020}: DhcpNameServer = 192.168.2.1
  321. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E894B371-083A-4329-9A36-32AB82764FA2}: DhcpNameServer = 192.168.2.1
  322. O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
  323. O18:[b]64bit:[/b] - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Programme\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
  324. O18:[b]64bit:[/b] - Protocol\Handler\skype4com - No CLSID value found
  325. O18:[b]64bit:[/b] - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
  326. O18 - Protocol\Handler\ms-help - No CLSID value found
  327. O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
  328. O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
  329. O18:[b]64bit:[/b] - Protocol\Filter\text/xml {807583E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL (Microsoft Corporation)
  330. O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
  331. O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
  332. O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
  333. O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
  334. O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - File not found
  335. O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  336. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  337. O32 - HKLM CDRom: AutoRun - 0
  338. O33 - MountPoints2\{ce2271b8-0fab-11e5-9f38-7429af5d97ca}\Shell - "" = AutoRun
  339. O33 - MountPoints2\{ce2271b8-0fab-11e5-9f38-7429af5d97ca}\Shell\AutoRun\command - "" = G:\Office.exe
  340. O34 - HKLM BootExecute: (autocheck autochk *)
  341. O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
  342. O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
  343. O35 - HKLM\..comfile [open] -- "%1" %*
  344. O35 - HKLM\..exefile [open] -- "%1" %*
  345. O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
  346. O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
  347. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  348. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  349. O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
  350. O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
  351. O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
  352.  
  353. [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
  354.  
  355. [2015.06.12 12:47:07 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\GWX
  356. [2015.06.12 12:41:41 | 000,000,000 | -H-D | C] -- C:\Users\Stephanie\_gsdata_
  357. [2015.06.12 12:39:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
  358. [2015.06.12 12:37:19 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Canon
  359. [2015.06.12 12:32:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Canon IJ Network Tool
  360. [2015.06.12 12:32:35 | 000,321,024 | ---- | C] (CANON INC.) -- C:\Windows\SysWow64\CNC_BLL.dll
  361. [2015.06.12 12:32:35 | 000,103,936 | ---- | C] (CANON INC.) -- C:\Windows\SysWow64\CNC_BLU.dll
  362. [2015.06.12 12:32:35 | 000,015,872 | ---- | C] (CANON INC.) -- C:\Windows\SysWow64\CNHMCA.dll
  363. [2015.06.12 12:32:29 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonIJFAX
  364. [2015.06.12 12:30:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX920 series Benutzerregistrierung
  365. [2015.06.12 12:29:52 | 000,000,000 | ---D | C] -- C:\ProgramData\CanonIJWSpt
  366. [2015.06.12 12:25:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
  367. [2015.06.12 12:25:17 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
  368. [2015.06.12 12:24:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX920 series Manual
  369. [2015.06.12 12:24:19 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonBJ
  370. [2015.06.12 12:23:48 | 000,390,656 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNMLMBL.DLL
  371. [2015.06.12 12:23:44 | 000,303,104 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNCALBL.DLL
  372. [2015.06.12 12:23:25 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
  373. [2015.06.12 12:23:10 | 000,359,936 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNMN6PPM.DLL
  374. [2015.06.12 12:23:10 | 000,039,424 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNMN6UI.DLL
  375. [2015.06.12 12:23:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\STRING
  376. [2015.06.12 12:22:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Canon
  377. [2015.06.11 10:48:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
  378. [2015.06.11 10:47:54 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
  379. [2015.06.11 10:47:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
  380. [2015.06.11 10:32:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
  381. [2015.06.11 10:32:16 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Samsung
  382. [2015.06.11 10:32:14 | 000,144,664 | ---- | C] (MAPILab Ltd. & Add-in Express Ltd.) -- C:\Windows\SysWow64\secman.dll
  383. [2015.06.11 10:32:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Samsung
  384. [2015.06.11 00:28:29 | 000,136,408 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
  385. [2015.06.11 00:28:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
  386. [2015.06.11 00:28:05 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
  387. [2015.06.11 00:28:05 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
  388. [2015.06.11 00:28:05 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
  389. [2015.06.11 00:28:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
  390. [2015.06.11 00:28:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
  391. [2015.06.11 00:27:43 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Programs
  392. [2015.06.11 00:23:18 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Skype
  393. [2015.06.11 00:22:58 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Skype
  394. [2015.06.11 00:22:50 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
  395. [2015.06.11 00:22:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
  396. [2015.06.11 00:22:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
  397. [2015.06.11 00:22:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
  398. [2015.06.10 23:54:36 | 000,000,000 | -HSD | C] -- C:\Config.Msi
  399. [2015.06.10 23:39:13 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\vlc
  400. [2015.06.10 23:38:48 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Avatar
  401. [2015.06.10 23:26:54 | 000,000,000 | ---D | C] -- C:\Windows\AutoKMS
  402. [2015.06.10 23:26:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Toolkit
  403. [2015.06.10 22:56:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
  404. [2015.06.10 22:56:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
  405. [2015.06.10 22:55:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server
  406. [2015.06.10 22:55:57 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
  407. [2015.06.10 22:55:46 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1991-06.com.microsoft
  408. [2015.06.10 22:55:18 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
  409. [2015.06.10 22:55:18 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
  410. [2015.06.10 22:53:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Analysis Services
  411. [2015.06.10 22:53:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services
  412. [2015.06.10 22:52:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
  413. [2015.06.10 22:52:49 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Microsoft Help
  414. [2015.06.10 22:52:48 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
  415. [2015.06.10 22:52:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
  416. [2015.06.10 22:51:16 | 000,000,000 | RH-D | C] -- C:\MSOCache
  417. [2015.06.10 22:47:48 | 000,000,000 | ---D | C] -- C:\ProgramData\GoodSync
  418. [2015.06.10 22:47:42 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\GoodSync
  419. [2015.06.10 22:47:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoodSync
  420. [2015.06.10 22:47:25 | 000,000,000 | ---D | C] -- C:\Program Files\Siber Systems
  421. [2015.06.10 22:46:18 | 000,030,264 | ---- | C] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtlitescsibus.sys
  422. [2015.06.10 22:46:17 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\DAEMON Tools Lite
  423. [2015.06.10 22:46:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
  424. [2015.06.10 22:46:15 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
  425. [2015.06.10 22:41:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
  426. [2015.06.10 22:40:53 | 000,110,176 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\klfphc.dll
  427. [2015.06.10 22:40:41 | 000,000,000 | ---D | C] -- C:\Windows\ELAMBKUP
  428. [2015.06.10 22:40:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
  429. [2015.06.10 22:40:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaspersky Lab
  430. [2015.06.10 22:40:28 | 000,842,440 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klif.sys
  431. [2015.06.10 22:40:28 | 000,245,960 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klhk.sys
  432. [2015.06.10 22:40:28 | 000,151,240 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klflt.sys
  433. [2015.06.10 22:38:32 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
  434. [2015.06.10 22:37:11 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Mozilla
  435. [2015.06.10 22:37:11 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Mozilla
  436. [2015.06.10 22:37:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
  437. [2015.06.10 22:35:45 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
  438. [2015.06.10 22:35:02 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Ashampoo
  439. [2015.06.10 22:34:36 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\ashampoo
  440. [2015.06.10 22:34:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
  441. [2015.06.10 22:34:36 | 000,000,000 | ---D | C] -- C:\ProgramData\ashampoo
  442. [2015.06.10 22:34:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ashampoo
  443. [2015.06.10 22:31:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TeamViewer
  444. [2015.06.10 22:30:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
  445. [2015.06.10 22:30:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
  446. [2015.06.10 22:30:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Thunderbird
  447. [2015.06.10 22:29:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire
  448. [2015.06.10 22:29:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FinalWire
  449. [2015.06.10 22:28:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
  450. [2015.06.10 22:28:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
  451. [2015.06.10 22:28:49 | 000,097,888 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
  452. [2015.06.10 22:28:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
  453. [2015.06.10 22:28:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
  454. [2015.06.10 22:28:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
  455. [2015.06.10 22:27:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
  456. [2015.06.10 22:26:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
  457. [2015.06.10 22:26:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
  458. [2015.06.10 22:25:28 | 000,778,416 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
  459. [2015.06.10 22:25:28 | 000,142,512 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
  460. [2015.06.10 22:25:27 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
  461. [2015.06.10 22:25:26 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
  462. [2015.06.10 22:24:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
  463. [2015.06.10 22:24:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
  464. [2015.06.10 22:24:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
  465. [2015.06.10 22:23:59 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Macromedia
  466. [2015.06.10 22:23:58 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Adobe
  467. [2015.06.10 22:22:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
  468. [2015.06.10 22:22:26 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
  469. [2015.06.10 22:16:06 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Adobe
  470. [2015.06.10 22:15:29 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\HD Tune Pro
  471. [2015.06.10 22:13:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro
  472. [2015.06.10 22:13:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HD Tune Pro
  473. [2015.06.10 22:02:22 | 000,000,000 | ---D | C] -- C:\Catalog
  474. [2015.06.10 21:34:41 | 000,000,000 | RHSD | C] -- C:\UefiBoot
  475. [2015.06.10 19:24:57 | 001,119,672 | ---- | C] (Acronis) -- C:\Windows\SysNative\drivers\tib.sys
  476. [2015.06.10 19:24:57 | 000,183,224 | ---- | C] (Acronis) -- C:\Windows\SysNative\drivers\tib_mounter.sys
  477. [2015.06.10 19:24:54 | 000,312,096 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\snapman.sys
  478. [2015.06.10 19:24:53 | 000,137,504 | ---- | C] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\fltsrv.sys
  479. [2015.06.10 19:23:09 | 000,000,000 | ---D | C] -- C:\ProgramData\firebird
  480. [2015.06.10 19:22:52 | 000,000,000 | ---D | C] -- C:\Windows\Acronis
  481. [2015.06.10 19:22:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
  482. [2015.06.10 19:22:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Acronis
  483. [2015.06.10 19:21:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Acronis
  484. [2015.06.10 19:13:47 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
  485. [2015.06.10 19:01:10 | 000,000,000 | --SD | C] -- C:\Windows\SysWow64\GWX
  486. [2015.06.10 19:01:10 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\GWX
  487. [2015.06.10 18:57:49 | 002,777,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
  488. [2015.06.10 18:57:49 | 002,285,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
  489. [2015.06.10 18:57:14 | 003,179,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
  490. [2015.06.10 18:57:14 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
  491. [2015.06.10 18:57:14 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
  492. [2015.06.10 18:57:11 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDYAK.DLL
  493. [2015.06.10 18:57:11 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDYAK.DLL
  494. [2015.06.10 18:57:11 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAT.DLL
  495. [2015.06.10 18:57:11 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAT.DLL
  496. [2015.06.10 18:57:11 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRU1.DLL
  497. [2015.06.10 18:57:11 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
  498. [2015.06.10 18:57:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRU1.DLL
  499. [2015.06.10 18:57:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRU.DLL
  500. [2015.06.10 18:57:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRU.DLL
  501. [2015.06.10 18:57:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
  502. [2015.06.10 18:57:10 | 002,871,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
  503. [2015.06.10 18:57:10 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
  504. [2015.06.10 18:57:03 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
  505. [2015.06.10 18:57:03 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
  506. [2015.06.10 18:57:03 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
  507. [2015.06.10 18:57:03 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
  508. [2015.06.10 18:57:03 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
  509. [2015.06.10 18:57:03 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
  510. [2015.06.10 18:57:03 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
  511. [2015.06.10 18:57:03 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
  512. [2015.06.10 18:57:03 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
  513. [2015.06.10 18:57:02 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
  514. [2015.06.10 18:57:02 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
  515. [2015.06.10 18:57:02 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
  516. [2015.06.10 18:57:02 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
  517. [2015.06.10 18:57:01 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
  518. [2015.06.10 18:57:01 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
  519. [2015.06.10 18:57:01 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
  520. [2015.06.10 18:57:01 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
  521. [2015.06.10 18:57:01 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
  522. [2015.06.10 18:57:01 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
  523. [2015.06.10 18:57:01 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
  524. [2015.06.10 18:57:01 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
  525. [2015.06.10 18:57:00 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
  526. [2015.06.10 18:57:00 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
  527. [2015.06.10 18:57:00 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
  528. [2015.06.10 18:56:59 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
  529. [2015.06.10 18:56:59 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
  530. [2015.06.10 18:56:59 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
  531. [2015.06.10 18:56:59 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
  532. [2015.06.10 18:56:59 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
  533. [2015.06.10 18:56:59 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
  534. [2015.06.10 18:56:58 | 006,026,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
  535. [2015.06.10 18:56:58 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
  536. [2015.06.10 18:56:58 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
  537. [2015.06.10 18:56:58 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
  538. [2015.06.10 18:56:58 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
  539. [2015.06.10 18:56:58 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
  540. [2015.06.10 18:56:57 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
  541. [2015.06.10 18:56:57 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
  542. [2015.06.10 18:56:57 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
  543. [2015.06.10 18:56:49 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
  544. [2015.06.10 18:56:48 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe
  545. [2015.06.10 18:56:46 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
  546. [2015.06.10 18:56:41 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
  547. [2015.06.10 18:56:41 | 001,699,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
  548. [2015.06.10 18:56:41 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsutil.exe
  549. [2015.06.10 18:56:41 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fsutil.exe
  550. [2015.06.10 18:56:41 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
  551. [2015.06.10 18:56:40 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
  552. [2015.06.10 18:56:38 | 006,584,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
  553. [2015.06.10 18:56:38 | 005,703,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
  554. [2015.06.10 18:56:26 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
  555. [2015.06.10 18:47:11 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\IntelGraphicsProfiles
  556. [2015.06.10 18:43:55 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
  557. [2015.06.10 18:43:54 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
  558. [2015.06.10 18:43:54 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
  559. [2015.06.10 18:43:54 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
  560. [2015.06.10 18:43:53 | 001,147,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
  561. [2015.06.10 18:43:53 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
  562. [2015.06.10 18:43:53 | 001,057,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
  563. [2015.06.10 18:43:53 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
  564. [2015.06.10 18:43:53 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
  565. [2015.06.10 18:43:53 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
  566. [2015.06.10 18:43:53 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsRdpWebAccess.dll
  567. [2015.06.10 18:43:53 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
  568. [2015.06.10 18:43:53 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MsRdpWebAccess.dll
  569. [2015.06.10 18:43:53 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprtPS.dll
  570. [2015.06.10 18:43:53 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wksprtPS.dll
  571. [2015.06.10 18:43:24 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp_winip.dll
  572. [2015.06.10 18:43:24 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp_winip.dll
  573. [2015.06.10 18:43:24 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbGD.sys
  574. [2015.06.10 18:43:24 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
  575. [2015.06.10 18:40:34 | 001,632,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
  576. [2015.06.10 18:40:34 | 001,372,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
  577. [2015.06.10 18:40:34 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmapi.dll
  578. [2015.06.10 18:40:33 | 003,147,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
  579. [2015.06.10 18:40:33 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
  580. [2015.06.10 18:40:33 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
  581. [2015.06.10 18:40:33 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
  582. [2015.06.10 18:40:33 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
  583. [2015.06.10 18:40:33 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
  584. [2015.06.10 18:40:33 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
  585. [2015.06.10 18:40:33 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
  586. [2015.06.10 18:40:33 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll
  587. [2015.06.10 18:40:33 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
  588. [2015.06.10 18:40:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
  589. [2015.06.10 18:40:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
  590. [2015.06.10 18:40:33 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
  591. [2015.06.10 18:40:33 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
  592. [2015.06.10 18:40:33 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll
  593. [2015.06.10 18:31:54 | 001,647,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
  594. [2015.06.10 18:31:52 | 001,424,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
  595. [2015.06.10 18:31:48 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
  596. [2015.06.10 18:31:48 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
  597. [2015.06.10 17:50:03 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Adobe
  598. [2015.06.10 17:38:51 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\CompatTel
  599. [2015.06.10 17:38:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appraiser
  600. [2015.06.10 16:45:37 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
  601. [2015.06.10 16:36:13 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
  602. [2015.06.10 16:36:11 | 000,942,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
  603. [2015.06.10 16:36:11 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
  604. [2015.06.10 16:36:11 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
  605. [2015.06.10 16:36:11 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
  606. [2015.06.10 16:36:11 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
  607. [2015.06.10 16:36:11 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
  608. [2015.06.10 16:36:11 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
  609. [2015.06.10 16:36:11 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
  610. [2015.06.10 16:36:11 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
  611. [2015.06.10 16:36:11 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
  612. [2015.06.10 16:36:11 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
  613. [2015.06.10 16:36:11 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
  614. [2015.06.10 16:36:11 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
  615. [2015.06.10 16:36:11 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
  616. [2015.06.10 16:36:11 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
  617. [2015.06.10 16:36:11 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
  618. [2015.06.10 16:36:11 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
  619. [2015.06.10 16:36:11 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
  620. [2015.06.10 16:36:11 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
  621. [2015.06.10 16:36:11 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
  622. [2015.06.10 16:36:11 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
  623. [2015.06.10 16:36:11 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
  624. [2015.06.10 16:36:11 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
  625. [2015.06.10 16:36:11 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
  626. [2015.06.10 16:36:11 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
  627. [2015.06.10 16:36:11 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
  628. [2015.06.10 16:36:11 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
  629. [2015.06.10 16:36:11 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
  630. [2015.06.10 16:36:11 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
  631. [2015.06.10 16:36:11 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
  632. [2015.06.10 16:36:11 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
  633. [2015.06.10 16:36:11 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
  634. [2015.06.10 16:36:11 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
  635. [2015.06.10 16:36:11 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
  636. [2015.06.10 16:36:11 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
  637. [2015.06.10 16:36:11 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
  638. [2015.06.10 16:36:11 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
  639. [2015.06.10 16:36:11 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
  640. [2015.06.10 16:36:11 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
  641. [2015.06.10 16:36:11 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
  642. [2015.06.10 16:29:22 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
  643. [2015.06.10 16:29:22 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
  644. [2015.06.10 16:29:22 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
  645. [2015.06.10 16:29:22 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
  646. [2015.06.10 16:29:22 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
  647. [2015.06.10 16:29:22 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
  648. [2015.06.10 16:29:22 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
  649. [2015.06.10 16:29:22 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
  650. [2015.06.10 16:29:22 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
  651. [2015.06.10 16:29:22 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
  652. [2015.06.10 16:29:22 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
  653. [2015.06.10 16:29:22 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
  654. [2015.06.10 16:29:22 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
  655. [2015.06.10 16:29:22 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
  656. [2015.06.10 16:29:22 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
  657. [2015.06.10 16:29:22 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
  658. [2015.06.10 16:29:22 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
  659. [2015.06.10 16:29:22 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
  660. [2015.06.10 16:29:22 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
  661. [2015.06.10 16:29:22 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
  662. [2015.06.10 16:29:22 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
  663. [2015.06.10 16:29:22 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
  664. [2015.06.10 16:29:21 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
  665. [2015.06.10 16:29:21 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
  666. [2015.06.10 16:29:21 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
  667. [2015.06.10 16:29:21 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
  668. [2015.06.10 16:29:21 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
  669. [2015.06.10 16:29:21 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
  670. [2015.06.10 16:29:21 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
  671. [2015.06.10 16:29:21 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
  672. [2015.06.10 16:29:21 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
  673. [2015.06.10 15:13:40 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
  674. [2015.06.10 15:12:46 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
  675. [2015.06.10 15:12:45 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
  676. [2015.06.10 15:12:45 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
  677. [2015.06.10 15:12:45 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
  678. [2015.06.10 15:06:49 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
  679. [2015.06.10 15:06:49 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
  680. [2015.06.10 15:03:30 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys
  681. [2015.06.10 14:56:20 | 001,389,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardagt.exe
  682. [2015.06.10 14:56:20 | 000,619,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardagt.exe
  683. [2015.06.10 14:56:20 | 000,171,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\infocardapi.dll
  684. [2015.06.10 14:56:20 | 000,099,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\infocardapi.dll
  685. [2015.06.10 14:56:20 | 000,008,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardres.dll
  686. [2015.06.10 14:56:20 | 000,008,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardres.dll
  687. [2015.06.10 14:56:11 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TsWpfWrp.exe
  688. [2015.06.10 14:56:11 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsWpfWrp.exe
  689. [2015.06.10 14:54:36 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
  690. [2015.06.10 14:54:35 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
  691. [2015.06.10 14:54:35 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
  692. [2015.06.10 14:54:34 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\synceng.dll
  693. [2015.06.10 14:54:34 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\synceng.dll
  694. [2015.06.10 14:54:08 | 000,020,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdusb.dll
  695. [2015.06.10 14:54:08 | 000,019,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd1394.dll
  696. [2015.06.10 14:54:08 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdcom.dll
  697. [2015.06.10 14:54:06 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
  698. [2015.06.10 14:54:06 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
  699. [2015.06.10 14:54:05 | 001,067,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msctf.dll
  700. [2015.06.10 14:54:04 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnet.dll
  701. [2015.06.10 14:54:04 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnet.dll
  702. [2015.06.10 14:54:02 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptdlg.dll
  703. [2015.06.10 14:54:02 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptdlg.dll
  704. [2015.06.10 14:53:29 | 000,722,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\objsel.dll
  705. [2015.06.10 14:53:29 | 000,538,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\objsel.dll
  706. [2015.06.10 14:53:28 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cngprovider.dll
  707. [2015.06.10 14:53:28 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adprovider.dll
  708. [2015.06.10 14:53:28 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\capiprovider.dll
  709. [2015.06.10 14:53:28 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpapiprovider.dll
  710. [2015.06.10 14:53:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cngprovider.dll
  711. [2015.06.10 14:53:28 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adprovider.dll
  712. [2015.06.10 14:53:28 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\capiprovider.dll
  713. [2015.06.10 14:53:28 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpapiprovider.dll
  714. [2015.06.10 14:53:28 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dimsroam.dll
  715. [2015.06.10 14:53:28 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wincredprovider.dll
  716. [2015.06.10 14:53:28 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dimsroam.dll
  717. [2015.06.10 14:53:28 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wincredprovider.dll
  718. [2015.06.10 14:53:17 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
  719. [2015.06.10 14:53:17 | 000,626,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
  720. [2015.06.10 14:53:17 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
  721. [2015.06.10 14:53:17 | 000,572,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
  722. [2015.06.10 14:53:16 | 000,553,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
  723. [2015.06.10 14:53:16 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
  724. [2015.06.10 14:53:16 | 000,528,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
  725. [2015.06.10 14:53:16 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
  726. [2015.06.10 14:53:16 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
  727. [2015.06.10 14:53:16 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
  728. [2015.06.10 14:53:16 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
  729. [2015.06.10 14:53:16 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
  730. [2015.06.10 14:53:16 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
  731. [2015.06.10 14:53:16 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
  732. [2015.06.10 14:53:16 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
  733. [2015.06.10 14:53:16 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
  734. [2015.06.10 14:53:16 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
  735. [2015.06.10 14:53:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcorehc.dll
  736. [2015.06.10 14:53:11 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
  737. [2015.06.10 14:53:11 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcorehc.dll
  738. [2015.06.10 14:53:10 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netevent.dll
  739. [2015.06.10 14:53:10 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netevent.dll
  740. [2015.06.10 14:53:07 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
  741. [2015.06.10 14:53:07 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
  742. [2015.06.10 14:52:43 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
  743. [2015.06.10 14:52:43 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
  744. [2015.06.10 14:52:37 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42.dll
  745. [2015.06.10 14:52:37 | 001,359,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42u.dll
  746. [2015.06.10 14:52:37 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll
  747. [2015.06.10 14:52:37 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnsapi.dll
  748. [2015.06.10 14:52:37 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscacheugc.exe
  749. [2015.06.10 14:52:37 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscacheugc.exe
  750. [2015.06.10 14:52:36 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll
  751. [2015.06.10 14:52:34 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
  752. [2015.06.10 14:52:33 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
  753. [2015.06.10 14:52:33 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
  754. [2015.06.10 14:52:33 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys
  755. [2015.06.10 14:52:30 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
  756. [2015.06.10 14:52:30 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
  757. [2015.06.10 14:52:29 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
  758. [2015.06.10 14:52:29 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
  759. [2015.06.10 14:52:27 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
  760. [2015.06.10 14:52:27 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
  761. [2015.06.10 14:52:25 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
  762. [2015.06.10 14:52:25 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
  763. [2015.06.10 14:52:25 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
  764. [2015.06.10 14:52:24 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
  765. [2015.06.10 14:52:24 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
  766. [2015.06.10 14:52:24 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
  767. [2015.06.10 14:52:24 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssph.dll
  768. [2015.06.10 14:52:24 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
  769. [2015.06.10 14:52:24 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
  770. [2015.06.10 14:52:24 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchProtocolHost.exe
  771. [2015.06.10 14:52:24 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFilterHost.exe
  772. [2015.06.10 14:52:24 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscntrs.dll
  773. [2015.06.10 14:52:24 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
  774. [2015.06.10 14:51:53 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
  775. [2015.06.10 14:51:52 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSManMigrationPlugin.dll
  776. [2015.06.10 14:51:52 | 000,310,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WsmWmiPl.dll
  777. [2015.06.10 14:51:52 | 000,266,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSManHTTPConfig.exe
  778. [2015.06.10 14:51:52 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSManMigrationPlugin.dll
  779. [2015.06.10 14:51:52 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WsmWmiPl.dll
  780. [2015.06.10 14:51:52 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSManHTTPConfig.exe
  781. [2015.06.10 14:51:52 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WsmAuto.dll
  782. [2015.06.10 14:51:52 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WsmAuto.dll
  783. [2015.06.10 14:51:51 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
  784. [2015.06.10 14:51:51 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
  785. [2015.06.10 14:51:51 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
  786. [2015.06.10 14:51:42 | 000,275,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\InkEd.dll
  787. [2015.06.10 14:51:42 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\InkEd.dll
  788. [2015.06.10 14:51:41 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jnwmon.dll
  789. [2015.06.10 14:51:40 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
  790. [2015.06.10 14:51:34 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
  791. [2015.06.10 14:51:34 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
  792. [2015.06.10 14:51:33 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
  793. [2015.06.10 14:51:33 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
  794. [2015.06.10 14:51:33 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
  795. [2015.06.10 14:51:33 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
  796. [2015.06.10 14:51:32 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
  797. [2015.06.10 14:51:31 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
  798. [2015.06.10 14:51:31 | 000,492,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
  799. [2015.06.10 14:51:27 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
  800. [2015.06.10 14:51:26 | 000,155,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
  801. [2015.06.10 14:51:22 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ubpm.dll
  802. [2015.06.10 14:51:22 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ubpm.dll
  803. [2015.06.10 14:50:09 | 001,239,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
  804. [2015.06.10 14:50:08 | 001,119,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
  805. [2015.06.10 14:50:08 | 001,021,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
  806. [2015.06.10 14:50:08 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
  807. [2015.06.10 14:50:08 | 000,700,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
  808. [2015.06.10 14:50:08 | 000,423,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
  809. [2015.06.10 14:50:08 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
  810. [2015.06.10 14:50:08 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
  811. [2015.06.10 14:50:08 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
  812. [2015.06.10 14:49:51 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmv2clt.dll
  813. [2015.06.10 14:49:51 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmv2clt.dll
  814. [2015.06.10 14:49:51 | 000,842,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
  815. [2015.06.10 14:49:51 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
  816. [2015.06.10 14:49:49 | 004,121,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
  817. [2015.06.10 14:49:48 | 003,209,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
  818. [2015.06.10 14:49:48 | 000,782,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
  819. [2015.06.10 14:49:48 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
  820. [2015.06.10 14:49:48 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AUDIOKSE.dll
  821. [2015.06.10 14:49:47 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
  822. [2015.06.10 14:49:47 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
  823. [2015.06.10 14:49:47 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
  824. [2015.06.10 14:49:46 | 001,574,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
  825. [2015.06.10 14:49:46 | 000,693,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
  826. [2015.06.10 14:49:46 | 000,619,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
  827. [2015.06.10 14:49:46 | 000,616,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
  828. [2015.06.10 14:49:46 | 000,532,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe
  829. [2015.06.10 14:49:46 | 000,457,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll
  830. [2015.06.10 14:49:46 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AUDIOKSE.dll
  831. [2015.06.10 14:49:46 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
  832. [2015.06.10 14:49:45 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
  833. [2015.06.10 14:49:45 | 001,069,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
  834. [2015.06.10 14:49:45 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
  835. [2015.06.10 14:49:45 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
  836. [2015.06.10 14:49:45 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll
  837. [2015.06.10 14:49:45 | 000,432,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll
  838. [2015.06.10 14:49:45 | 000,371,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
  839. [2015.06.10 14:49:44 | 001,005,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
  840. [2015.06.10 14:49:44 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
  841. [2015.06.10 14:49:44 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
  842. [2015.06.10 14:49:43 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
  843. [2015.06.10 14:49:43 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll
  844. [2015.06.10 14:49:43 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
  845. [2015.06.10 14:49:43 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
  846. [2015.06.10 14:49:43 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDump.dll
  847. [2015.06.10 14:49:43 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptsp.dll
  848. [2015.06.10 14:49:43 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidapi.dll
  849. [2015.06.10 14:49:42 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
  850. [2015.06.10 14:49:42 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
  851. [2015.06.10 14:49:42 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
  852. [2015.06.10 14:49:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidpolicyconverter.exe
  853. [2015.06.10 14:49:42 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
  854. [2015.06.10 14:49:42 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfps.dll
  855. [2015.06.10 14:49:42 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setbcdlocale.dll
  856. [2015.06.10 14:49:42 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rrinstaller.exe
  857. [2015.06.10 14:49:42 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appidapi.dll
  858. [2015.06.10 14:49:42 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rrinstaller.exe
  859. [2015.06.10 14:49:42 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcadm.dll
  860. [2015.06.10 14:49:42 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfpmp.exe
  861. [2015.06.10 14:49:42 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfpmp.exe
  862. [2015.06.10 14:49:42 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidcertstorecheck.exe
  863. [2015.06.10 14:49:42 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcawrk.exe
  864. [2015.06.10 14:49:42 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmmsp.dll
  865. [2015.06.10 14:49:42 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcalua.exe
  866. [2015.06.10 14:49:42 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcaevts.dll
  867. [2015.06.10 14:49:42 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mferror.dll
  868. [2015.06.10 14:49:42 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mferror.dll
  869. [2015.06.10 14:49:23 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
  870. [2015.06.10 14:49:23 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
  871. [2015.06.10 14:49:19 | 005,569,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
  872. [2015.06.10 14:49:19 | 001,728,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
  873. [2015.06.10 14:49:19 | 001,255,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diagtrack.dll
  874. [2015.06.10 14:49:19 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UtcResources.dll
  875. [2015.06.10 14:49:18 | 003,989,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
  876. [2015.06.10 14:49:18 | 003,934,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
  877. [2015.06.10 14:49:18 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
  878. [2015.06.10 14:49:18 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
  879. [2015.06.10 14:49:18 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
  880. [2015.06.10 14:49:18 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
  881. [2015.06.10 14:49:17 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
  882. [2015.06.10 14:49:17 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
  883. [2015.06.10 14:49:17 | 000,635,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
  884. [2015.06.10 14:49:17 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
  885. [2015.06.10 14:49:17 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
  886. [2015.06.10 14:49:17 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
  887. [2015.06.10 14:49:17 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
  888. [2015.06.10 14:49:17 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
  889. [2015.06.10 14:49:17 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
  890. [2015.06.10 14:49:17 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
  891. [2015.06.10 14:49:16 | 000,404,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tracerpt.exe
  892. [2015.06.10 14:49:16 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tracerpt.exe
  893. [2015.06.10 14:49:16 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
  894. [2015.06.10 14:49:16 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
  895. [2015.06.10 14:49:16 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sechost.dll
  896. [2015.06.10 14:49:16 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
  897. [2015.06.10 14:49:16 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
  898. [2015.06.10 14:49:16 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
  899. [2015.06.10 14:49:16 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
  900. [2015.06.10 14:49:16 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
  901. [2015.06.10 14:49:16 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\typeperf.exe
  902. [2015.06.10 14:49:16 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
  903. [2015.06.10 14:49:16 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\typeperf.exe
  904. [2015.06.10 14:49:16 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
  905. [2015.06.10 14:49:15 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
  906. [2015.06.10 14:49:15 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
  907. [2015.06.10 14:49:15 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
  908. [2015.06.10 14:49:15 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
  909. [2015.06.10 14:49:15 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
  910. [2015.06.10 14:49:15 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
  911. [2015.06.10 14:49:15 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
  912. [2015.06.10 14:49:15 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
  913. [2015.06.10 14:49:15 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
  914. [2015.06.10 14:49:15 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\diskperf.exe
  915. [2015.06.10 14:49:15 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\diskperf.exe
  916. [2015.06.10 14:49:15 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
  917. [2015.06.10 14:49:15 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
  918. [2015.06.10 14:49:15 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
  919. [2015.06.10 14:49:15 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
  920. [2015.06.10 14:49:15 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
  921. [2015.06.10 14:49:15 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
  922. [2015.06.10 14:49:15 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
  923. [2015.06.10 14:49:15 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
  924. [2015.06.10 14:49:15 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
  925. [2015.06.10 14:49:15 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
  926. [2015.06.10 14:49:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
  927. [2015.06.10 14:49:15 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
  928. [2015.06.10 14:49:15 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
  929. [2015.06.10 14:49:15 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
  930. [2015.06.10 14:49:15 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
  931. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
  932. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
  933. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
  934. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
  935. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
  936. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
  937. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
  938. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
  939. [2015.06.10 14:49:15 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
  940. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
  941. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
  942. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
  943. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
  944. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
  945. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
  946. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
  947. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
  948. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
  949. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
  950. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
  951. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
  952. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
  953. [2015.06.10 14:49:15 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
  954. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
  955. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
  956. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
  957. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
  958. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
  959. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
  960. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
  961. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
  962. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
  963. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
  964. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
  965. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
  966. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
  967. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
  968. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
  969. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
  970. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
  971. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
  972. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
  973. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
  974. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
  975. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
  976. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
  977. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
  978. [2015.06.10 14:49:15 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
  979. [2015.06.10 14:49:15 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
  980. [2015.06.10 14:49:01 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
  981. [2015.06.10 14:49:00 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
  982. [2015.06.10 14:49:00 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
  983. [2015.06.10 14:49:00 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
  984. [2015.06.10 14:49:00 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdrmemptylst.exe
  985. [2015.06.10 14:48:26 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
  986. [2015.06.10 14:48:26 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
  987. [2015.06.10 14:45:09 | 000,634,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcrt.dll
  988. [2015.06.10 14:45:00 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
  989. [2015.06.10 14:45:00 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
  990. [2015.06.10 14:44:56 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
  991. [2015.06.10 14:44:56 | 000,288,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
  992. [2015.06.10 14:44:53 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
  993. [2015.06.10 14:44:53 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
  994. [2015.06.10 14:44:52 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
  995. [2015.06.10 14:44:52 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
  996. [2015.06.10 14:44:50 | 014,635,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
  997. [2015.06.10 14:44:49 | 011,411,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
  998. [2015.06.10 14:44:48 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
  999. [2015.06.10 14:44:48 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
  1000. [2015.06.10 14:44:48 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
  1001. [2015.06.10 14:44:48 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
  1002. [2015.06.10 14:44:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
  1003. [2015.06.10 14:44:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
  1004. [2015.06.10 14:44:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
  1005. [2015.06.10 14:44:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
  1006. [2015.06.10 14:44:46 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OxpsConverter.exe
  1007. [2015.06.10 14:44:38 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcore6.dll
  1008. [2015.06.10 14:44:38 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dhcpcore6.dll
  1009. [2015.06.10 14:44:38 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcsvc6.dll
  1010. [2015.06.10 14:44:34 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
  1011. [2015.06.10 14:44:34 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
  1012. [2015.06.10 14:44:27 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSCOVER.exe
  1013. [2015.06.10 14:44:27 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
  1014. [2015.06.10 14:44:24 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\RNDISMP.sys
  1015. [2015.06.10 14:44:22 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
  1016. [2015.06.10 14:44:22 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
  1017. [2015.06.10 14:44:22 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
  1018. [2015.06.10 14:44:22 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
  1019. [2015.06.10 14:44:22 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
  1020. [2015.06.10 14:44:22 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccu32.dll
  1021. [2015.06.10 14:44:22 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccr32.dll
  1022. [2015.06.10 14:44:22 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll
  1023. [2015.06.10 14:44:22 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll
  1024. [2015.06.10 14:44:20 | 000,069,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\stream.sys
  1025. [2015.06.10 14:44:20 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
  1026. [2015.06.10 14:44:17 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
  1027. [2015.06.10 14:44:13 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe
  1028. [2015.06.10 14:44:11 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
  1029. [2015.06.10 14:44:11 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
  1030. [2015.06.10 14:44:11 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
  1031. [2015.06.10 14:44:11 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
  1032. [2015.06.10 14:43:57 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll
  1033. [2015.06.10 14:43:57 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sdbinst.exe
  1034. [2015.06.10 14:43:57 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sdbinst.exe
  1035. [2015.06.10 14:43:57 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shimeng.dll
  1036. [2015.06.10 14:43:43 | 000,372,224 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
  1037. [2015.06.10 14:43:43 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
  1038. [2015.06.10 14:43:43 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
  1039. [2015.06.10 14:43:43 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
  1040. [2015.06.10 14:43:43 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
  1041. [2015.06.10 14:43:43 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
  1042. [2015.06.10 14:43:43 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
  1043. [2015.06.10 14:43:43 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
  1044. [2015.06.10 14:42:31 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sbe.dll
  1045. [2015.06.10 14:42:31 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
  1046. [2015.06.10 14:42:31 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll
  1047. [2015.06.10 14:42:31 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
  1048. [2015.06.10 14:42:31 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax
  1049. [2015.06.10 14:42:31 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
  1050. [2015.06.10 14:42:27 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
  1051. [2015.06.10 14:42:27 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
  1052. [2015.06.10 14:42:27 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
  1053. [2015.06.10 14:42:22 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml6r.dll
  1054. [2015.06.10 14:42:22 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml6r.dll
  1055. [2015.06.10 14:42:19 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe
  1056. [2015.06.10 14:42:19 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe
  1057. [2015.06.10 14:42:17 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\osk.exe
  1058. [2015.06.10 14:42:17 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\osk.exe
  1059. [2015.06.10 14:42:08 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs
  1060. [2015.06.10 14:42:08 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysNative\fpb.rs
  1061. [2015.06.10 14:42:08 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs
  1062. [2015.06.10 14:42:08 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc-nz.rs
  1063. [2015.06.10 14:42:08 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegibbfc.rs
  1064. [2015.06.10 14:42:08 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs
  1065. [2015.06.10 14:42:08 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysNative\csrr.rs
  1066. [2015.06.10 14:42:08 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs
  1067. [2015.06.10 14:42:08 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cob-au.rs
  1068. [2015.06.10 14:42:07 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
  1069. [2015.06.10 14:42:07 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
  1070. [2015.06.10 14:42:07 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll
  1071. [2015.06.10 14:42:07 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
  1072. [2015.06.10 14:42:07 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs
  1073. [2015.06.10 14:42:07 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs
  1074. [2015.06.10 14:42:07 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysNative\usk.rs
  1075. [2015.06.10 14:42:07 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs
  1076. [2015.06.10 14:42:07 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysNative\grb.rs
  1077. [2015.06.10 14:42:07 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs
  1078. [2015.06.10 14:42:07 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-pt.rs
  1079. [2015.06.10 14:42:07 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs
  1080. [2015.06.10 14:42:07 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi.rs
  1081. [2015.06.10 14:42:07 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs
  1082. [2015.06.10 14:42:07 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysNative\djctq.rs
  1083. [2015.06.10 14:42:06 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs
  1084. [2015.06.10 14:42:06 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cero.rs
  1085. [2015.06.10 14:42:06 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs
  1086. [2015.06.10 14:42:06 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysNative\esrb.rs
  1087. [2015.06.10 14:42:06 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs
  1088. [2015.06.10 14:42:06 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc.rs
  1089. [2015.06.10 14:42:06 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs
  1090. [2015.06.10 14:42:06 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-fi.rs
  1091. [2015.06.10 14:41:52 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
  1092. [2015.06.10 14:41:51 | 001,031,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
  1093. [2015.06.10 14:41:51 | 000,793,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
  1094. [2015.06.10 14:41:48 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
  1095. [2015.06.10 14:41:48 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
  1096. [2015.06.10 14:41:44 | 000,190,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
  1097. [2015.06.10 14:41:44 | 000,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
  1098. [2015.06.10 14:41:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iologmsg.dll
  1099. [2015.06.10 14:41:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iologmsg.dll
  1100. [2015.06.10 14:41:39 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
  1101. [2015.06.10 14:41:37 | 001,943,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
  1102. [2015.06.10 14:41:37 | 001,131,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
  1103. [2015.06.10 14:41:37 | 000,156,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
  1104. [2015.06.10 14:41:37 | 000,156,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
  1105. [2015.06.10 14:41:37 | 000,081,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
  1106. [2015.06.10 14:41:37 | 000,073,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscories.dll
  1107. [2015.06.10 14:41:36 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wer.dll
  1108. [2015.06.10 14:41:36 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
  1109. [2015.06.10 14:41:35 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
  1110. [2015.06.10 14:41:35 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
  1111. [2015.06.10 14:41:35 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
  1112. [2015.06.10 14:41:35 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
  1113. [2015.06.10 14:41:35 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
  1114. [2015.06.10 14:41:35 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
  1115. [2015.06.10 14:41:34 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10K.DLL
  1116. [2015.06.10 14:41:34 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10K.DLL
  1117. [2015.06.10 14:41:33 | 002,543,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpdshext.dll
  1118. [2015.06.10 14:41:31 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\charmap.exe
  1119. [2015.06.10 14:41:31 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\charmap.exe
  1120. [2015.06.10 14:41:10 | 001,192,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certutil.exe
  1121. [2015.06.10 14:41:10 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certutil.exe
  1122. [2015.06.10 14:41:09 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certenc.dll
  1123. [2015.06.10 14:41:09 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certenc.dll
  1124. [2015.06.10 14:41:04 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xmllite.dll
  1125. [2015.06.10 14:39:01 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perftrack.dll
  1126. [2015.06.10 14:39:01 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powertracker.dll
  1127. [2015.06.10 14:36:18 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
  1128. [2015.06.10 14:36:09 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll
  1129. [2015.06.10 14:36:09 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
  1130. [2015.06.10 14:36:08 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll
  1131. [2015.06.10 14:36:06 | 003,241,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
  1132. [2015.06.10 14:36:06 | 001,941,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
  1133. [2015.06.10 14:36:06 | 001,805,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
  1134. [2015.06.10 14:36:06 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msihnd.dll
  1135. [2015.06.10 14:36:06 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
  1136. [2015.06.10 14:36:06 | 000,112,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
  1137. [2015.06.10 14:31:47 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clfsw32.dll
  1138. [2015.06.10 14:31:47 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clfsw32.dll
  1139. [2015.06.10 14:31:46 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
  1140. [2015.06.10 14:31:46 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
  1141. [2015.06.10 14:31:43 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
  1142. [2015.06.10 14:31:43 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
  1143. [2015.06.10 14:31:43 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
  1144. [2015.06.10 14:31:43 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
  1145. [2015.06.10 14:31:37 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
  1146. [2015.06.10 14:24:48 | 001,216,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
  1147. [2015.06.10 12:59:26 | 000,285,280 | ---- | C] (Acronis) -- C:\Windows\SysNative\drivers\afcdp.sys
  1148. [2015.06.10 12:59:22 | 001,263,200 | ---- | C] (Acronis) -- C:\Windows\SysNative\drivers\tdrpm273.sys
  1149. [2015.06.10 12:59:20 | 000,970,336 | ---- | C] (Acronis) -- C:\Windows\SysNative\drivers\timntr.sys
  1150. [2015.06.10 12:58:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Acronis
  1151. [2015.06.10 12:58:00 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Acronis
  1152. [2015.06.10 12:55:50 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\IDT
  1153. [2015.06.10 12:46:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
  1154. [2015.06.10 12:44:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
  1155. [2015.06.10 12:44:33 | 000,000,000 | ---D | C] -- C:\Program Files\Hewlett-Packard
  1156. [2015.06.10 12:40:41 | 000,000,000 | ---D | C] -- C:\HP
  1157. [2015.06.10 12:39:36 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Youcam
  1158. [2015.06.10 12:39:34 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\CyberLink
  1159. [2015.06.10 12:39:08 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\CyberLink
  1160. [2015.06.10 12:38:54 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Power2Go8
  1161. [2015.06.10 12:38:21 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\CyberLink
  1162. [2015.06.10 12:36:52 | 000,041,192 | ---- | C] (CyberLink Corporation) -- C:\Windows\SysNative\drivers\clwvd.sys
  1163. [2015.06.10 12:36:47 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
  1164. [2015.06.10 12:35:36 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink
  1165. [2015.06.10 12:34:47 | 000,090,608 | ---- | C] (CyberLink) -- C:\Windows\SysNative\drivers\CLVirtualDrive.sys
  1166. [2015.06.10 12:34:47 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
  1167. [2015.06.10 12:34:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\CyberLink
  1168. [2015.06.10 12:32:49 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
  1169. [2015.06.10 12:31:57 | 000,000,000 | ---D | C] -- C:\ProgramData\install_clap
  1170. [2015.06.10 12:30:52 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
  1171. [2015.06.10 12:30:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CyberLink
  1172. [2015.06.10 12:30:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Temp
  1173. [2015.06.10 12:27:55 | 000,000,000 | ---D | C] -- C:\Windows\Hewlett-Packard
  1174. [2015.06.10 12:26:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
  1175. [2015.06.10 12:26:00 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Hewlett-Packard
  1176. [2015.06.10 12:22:47 | 000,000,000 | ---D | C] -- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44}
  1177. [2015.06.10 12:20:59 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Bluetooth
  1178. [2015.06.10 12:20:58 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\bluesoleil
  1179. [2015.06.10 12:17:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ralink Corporation
  1180. [2015.06.10 12:15:27 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Hewlett-Packard
  1181. [2015.06.10 12:13:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Hewlett-Packard
  1182. [2015.06.10 12:13:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
  1183. [2015.06.10 12:12:40 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\hpqLog
  1184. [2015.06.10 12:11:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel Corporation
  1185. [2015.06.10 12:10:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PostureAgent
  1186. [2015.06.10 12:10:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel(R) Update Manager
  1187. [2015.06.10 12:06:27 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Intel Corporation
  1188. [2015.06.10 12:06:11 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
  1189. [2015.06.10 12:06:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
  1190. [2015.06.10 12:03:47 | 000,883,928 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
  1191. [2015.06.10 12:03:47 | 000,108,760 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
  1192. [2015.06.10 12:03:47 | 000,074,456 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
  1193. [2015.06.10 12:00:08 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Intel
  1194. [2015.06.10 11:59:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hewlett-Packard
  1195. [2015.06.10 11:57:29 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Synaptics
  1196. [2015.06.10 11:57:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Synaptics
  1197. [2015.06.10 11:55:59 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys
  1198. [2015.06.10 11:55:59 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wdfres.dll
  1199. [2015.06.10 11:55:53 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
  1200. [2015.06.10 11:54:03 | 002,439,368 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\drivers\netr28x.sys
  1201. [2015.06.10 11:54:03 | 000,331,568 | ---- | C] (Ralink Technology, Inc.) -- C:\Windows\SysNative\RaCoInstx.dll
  1202. [2015.06.10 11:54:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Ralink Driver
  1203. [2015.06.10 11:53:41 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\InstallShield
  1204. [2015.06.10 11:51:10 | 000,086,528 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.DLL
  1205. [2015.06.10 11:51:10 | 000,082,432 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.DLL
  1206. [2015.06.10 11:51:06 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
  1207. [2015.06.10 11:51:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel
  1208. [2015.06.10 11:46:47 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sda
  1209. [2015.06.10 11:46:17 | 009,889,352 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysWow64\RtsPerIcon.dll
  1210. [2015.06.10 11:46:17 | 000,444,632 | ---- | C] (Realsil Semiconductor Corporation) -- C:\Windows\SysNative\drivers\RtsPer.sys
  1211. [2015.06.10 11:46:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
  1212. [2015.06.10 11:43:57 | 008,157,184 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\IDTNHP.dll
  1213. [2015.06.10 11:43:57 | 008,131,584 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\IDTNGUI.exe
  1214. [2015.06.10 11:43:57 | 006,154,240 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\stlang64.dll
  1215. [2015.06.10 11:43:57 | 002,233,344 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\IDTNX.dll
  1216. [2015.06.10 11:43:57 | 001,897,984 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\IDTNC64.cpl
  1217. [2015.06.10 11:43:57 | 001,703,424 | ---- | C] (IDT, Inc.) -- C:\Windows\sttray64.exe
  1218. [2015.06.10 11:43:57 | 000,464,384 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\slapoi64.dll
  1219. [2015.06.10 11:43:57 | 000,253,952 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\IDTNJ.exe
  1220. [2015.06.10 11:39:58 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
  1221. [2015.06.10 11:39:00 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SRSLabs
  1222. [2015.06.10 11:38:27 | 002,213,376 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\stapo64.dll
  1223. [2015.06.10 11:38:27 | 000,697,856 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\stapi64.dll
  1224. [2015.06.10 11:38:27 | 000,551,936 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\drivers\stwrt64.sys
  1225. [2015.06.10 11:38:27 | 000,499,200 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\stcplx64.dll
  1226. [2015.06.10 11:38:27 | 000,256,000 | ---- | C] (IDT, Inc.) -- C:\Windows\SysNative\st646498.dll
  1227. [2015.06.10 11:38:26 | 000,000,000 | ---D | C] -- C:\Program Files\IDT
  1228. [2015.06.10 11:38:25 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
  1229. [2015.06.10 11:35:41 | 000,041,984 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\USB3Ver.dll
  1230. [2015.06.10 11:35:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
  1231. [2015.06.10 11:35:37 | 000,000,000 | ---D | C] -- C:\Intel
  1232. [2015.06.10 11:34:41 | 000,000,000 | ---D | C] -- C:\Program Files\Validity Sensors
  1233. [2015.06.10 11:33:22 | 000,000,000 | ---D | C] -- C:\Windows\Panther
  1234. [2015.06.10 11:01:58 | 000,000,000 | ---D | C] -- C:\Windows\Migration
  1235. [2015.06.10 11:01:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
  1236. [2015.06.10 11:01:44 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
  1237. [2015.06.10 10:40:49 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
  1238. [2015.06.10 10:40:49 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Searches
  1239. [2015.06.10 10:40:49 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
  1240. [2015.06.10 10:40:40 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Identities
  1241. [2015.06.10 10:40:38 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Contacts
  1242. [2015.06.10 10:40:37 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\VirtualStore
  1243. [2015.06.10 10:40:28 | 000,000,000 | --SD | C] -- C:\Users\Stephanie\AppData\Roaming\Microsoft
  1244. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Videos
  1245. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Saved Games
  1246. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Pictures
  1247. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Music
  1248. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
  1249. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Links
  1250. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Favorites
  1251. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Downloads
  1252. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Documents
  1253. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Desktop
  1254. [2015.06.10 10:40:28 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
  1255. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Vorlagen
  1256. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\AppData\Local\Verlauf
  1257. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\AppData\Local\Temporary Internet Files
  1258. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Startmenü
  1259. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\SendTo
  1260. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Recent
  1261. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Netzwerkumgebung
  1262. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Lokale Einstellungen
  1263. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Documents\Eigene Videos
  1264. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Documents\Eigene Musik
  1265. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Eigene Dateien
  1266. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Documents\Eigene Bilder
  1267. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Druckumgebung
  1268. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Cookies
  1269. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\AppData\Local\Anwendungsdaten
  1270. [2015.06.10 10:40:28 | 000,000,000 | -HSD | C] -- C:\Users\Stephanie\Anwendungsdaten
  1271. [2015.06.10 10:40:28 | 000,000,000 | -H-D | C] -- C:\Users\Stephanie\AppData
  1272. [2015.06.10 10:40:28 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Temp
  1273. [2015.06.10 10:40:28 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Local\Microsoft
  1274. [2015.06.10 10:40:28 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\AppData\Roaming\Media Center Programs
  1275. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
  1276. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
  1277. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Recovery
  1278. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Programme
  1279. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
  1280. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
  1281. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
  1282. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
  1283. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
  1284. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
  1285. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
  1286. [2015.06.10 10:40:20 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
  1287. [2015.06.10 10:36:49 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
  1288. [2015.06.10 10:34:32 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
  1289. [2015.06.10 10:33:44 | 000,000,000 | -HSD | C] -- C:\System Volume Information
  1290. [2015.06.09 23:03:58 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Desktop\Hochzeit
  1291. [2015.06.09 23:03:23 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Thunderbird-Profil
  1292. [2015.06.09 22:56:36 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Thunderbird 2 (nicht löschen)
  1293. [2015.06.09 22:56:36 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Thunderbird (nicht löschen)
  1294. [2015.06.09 22:56:36 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\The KMPlayer
  1295. [2015.06.09 22:56:22 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Studium und Uni
  1296. [2015.06.09 22:56:22 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Studium Sprachwissenschaften
  1297. [2015.06.09 22:56:22 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Steuer
  1298. [2015.06.09 22:56:21 | 000,000,000 | R--D | C] -- C:\Users\Stephanie\Documents\Scanned Documents
  1299. [2015.06.09 22:56:21 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Reg-Sicherungen (nicht löschen)
  1300. [2015.06.09 22:56:18 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Referendariat
  1301. [2015.06.09 22:56:18 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Protokoll Mündliche Prüfung ZJS
  1302. [2015.06.09 22:56:17 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Outlook-Dateien
  1303. [2015.06.09 22:56:16 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\OneNote-Notizbücher
  1304. [2015.06.09 22:56:16 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Nero
  1305. [2015.06.09 22:56:13 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\ICQ Lite
  1306. [2015.06.09 22:56:13 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Fax
  1307. [2015.06.09 22:56:13 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Eigene Scans
  1308. [2015.06.09 22:56:12 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\CyberLink
  1309. [2015.06.09 22:56:12 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Camtasia Studio
  1310. [2015.06.09 22:55:56 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Bewerbungen
  1311. [2015.06.09 22:55:56 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\Benutzerdefinierte Office-Vorlagen
  1312. [2015.06.09 22:55:56 | 000,000,000 | ---D | C] -- C:\Users\Stephanie\Documents\AIDA64 Reports
  1313. [2015.05.18 22:16:32 | 000,056,008 | ---- | C] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\kldisk.sys
  1314. [2 C:\Windows\Fonts\*.tmp files -> C:\Windows\Fonts\*.tmp -> ]
  1315. [1 C:\Users\Stephanie\Desktop\*.tmp files -> C:\Users\Stephanie\Desktop\*.tmp -> ]
  1316.  
  1317. [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
  1318.  
  1319. [2015.06.16 20:36:34 | 000,136,408 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
  1320. [2015.06.16 20:33:38 | 000,022,544 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  1321. [2015.06.16 20:33:38 | 000,022,544 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  1322. [2015.06.16 20:30:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
  1323. [2015.06.16 20:13:39 | 000,003,620 | ---- | M] () -- C:\Windows\SysWow64\LOCALSERVICE.INI
  1324. [2015.06.16 20:13:25 | 000,001,060 | ---- | M] () -- C:\Windows\SysWow64\bscs.ini
  1325. [2015.06.16 20:13:02 | 000,000,043 | ---- | M] () -- C:\Windows\SysWow64\LOCALDEVICE.INI
  1326. [2015.06.16 20:11:55 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
  1327. [2015.06.16 20:11:38 | 3155,382,272 | -HS- | M] () -- C:\hiberfil.sys
  1328. [2015.06.12 12:40:06 | 000,002,121 | ---- | M] () -- C:\Users\Stephanie\Desktop\IJ Scan Utility.lnk
  1329. [2015.06.12 12:39:33 | 000,000,828 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
  1330. [2015.06.11 10:39:39 | 000,003,037 | ---- | M] () -- C:\Users\Stephanie\Desktop\Excel 2013.lnk
  1331. [2015.06.11 10:39:25 | 000,002,937 | ---- | M] () -- C:\Users\Stephanie\Desktop\PowerPoint 2013.lnk
  1332. [2015.06.11 10:39:22 | 000,003,015 | ---- | M] () -- C:\Users\Stephanie\Desktop\Word 2013.lnk
  1333. [2015.06.11 10:32:25 | 000,001,979 | ---- | M] () -- C:\Users\Public\Desktop\Samsung Kies 3.lnk
  1334. [2015.06.11 10:11:52 | 000,437,416 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
  1335. [2015.06.11 00:22:50 | 000,002,699 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
  1336. [2015.06.10 23:30:14 | 000,007,623 | ---- | M] () -- C:\Users\Stephanie\AppData\Local\Resmon.ResmonCfg
  1337. [2015.06.10 22:46:18 | 000,030,264 | ---- | M] (Disc Soft Ltd) -- C:\Windows\SysNative\drivers\dtlitescsibus.sys
  1338. [2015.06.10 22:37:05 | 000,001,157 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
  1339. [2015.06.10 22:34:36 | 000,001,181 | ---- | M] () -- C:\Users\Public\Desktop\Ashampoo Burning Studio 9.lnk
  1340. [2015.06.10 22:30:45 | 000,002,096 | ---- | M] () -- C:\Users\Public\Desktop\alte Emails.lnk
  1341. [2015.06.10 22:28:38 | 000,097,888 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
  1342. [2015.06.10 22:26:18 | 000,001,076 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
  1343. [2015.06.10 22:25:28 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
  1344. [2015.06.10 22:25:28 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
  1345. [2015.06.10 22:15:59 | 001,621,742 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
  1346. [2015.06.10 22:15:59 | 000,699,964 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
  1347. [2015.06.10 22:15:59 | 000,654,762 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
  1348. [2015.06.10 22:15:59 | 000,149,570 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
  1349. [2015.06.10 22:15:59 | 000,122,132 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
  1350. [2015.06.10 19:24:57 | 001,119,672 | ---- | M] (Acronis) -- C:\Windows\SysNative\drivers\tib.sys
  1351. [2015.06.10 19:24:57 | 000,183,224 | ---- | M] (Acronis) -- C:\Windows\SysNative\drivers\tib_mounter.sys
  1352. [2015.06.10 19:24:54 | 000,312,096 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\snapman.sys
  1353. [2015.06.10 19:24:53 | 000,137,504 | ---- | M] (Acronis International GmbH) -- C:\Windows\SysNative\drivers\fltsrv.sys
  1354. [2015.06.10 19:05:06 | 000,000,118 | ---- | M] () -- C:\Windows\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
  1355. [2015.06.10 18:47:18 | 000,000,401 | ---- | M] () -- C:\Windows\SysNative\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
  1356. [2015.06.10 18:45:03 | 001,596,206 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
  1357. [2015.06.10 16:36:13 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
  1358. [2015.06.10 16:36:11 | 000,942,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
  1359. [2015.06.10 16:36:11 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
  1360. [2015.06.10 16:36:11 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
  1361. [2015.06.10 16:36:11 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
  1362. [2015.06.10 16:36:11 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
  1363. [2015.06.10 16:36:11 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
  1364. [2015.06.10 16:36:11 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
  1365. [2015.06.10 16:36:11 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
  1366. [2015.06.10 16:36:11 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
  1367. [2015.06.10 16:36:11 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
  1368. [2015.06.10 16:36:11 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
  1369. [2015.06.10 16:36:11 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
  1370. [2015.06.10 16:36:11 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
  1371. [2015.06.10 16:36:11 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
  1372. [2015.06.10 16:36:11 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
  1373. [2015.06.10 16:36:11 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
  1374. [2015.06.10 16:36:11 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
  1375. [2015.06.10 16:36:11 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
  1376. [2015.06.10 16:36:11 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
  1377. [2015.06.10 16:36:11 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
  1378. [2015.06.10 16:36:11 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
  1379. [2015.06.10 16:36:11 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
  1380. [2015.06.10 16:36:11 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
  1381. [2015.06.10 16:36:11 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
  1382. [2015.06.10 16:36:11 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
  1383. [2015.06.10 16:36:11 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
  1384. [2015.06.10 16:36:11 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
  1385. [2015.06.10 16:36:11 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
  1386. [2015.06.10 16:36:11 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
  1387. [2015.06.10 16:36:11 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
  1388. [2015.06.10 16:36:11 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
  1389. [2015.06.10 16:36:11 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
  1390. [2015.06.10 16:36:11 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
  1391. [2015.06.10 16:36:11 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
  1392. [2015.06.10 16:36:11 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
  1393. [2015.06.10 16:36:11 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
  1394. [2015.06.10 16:36:11 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
  1395. [2015.06.10 16:36:11 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
  1396. [2015.06.10 16:36:11 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
  1397. [2015.06.10 16:36:11 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
  1398. [2015.06.10 16:29:22 | 001,682,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
  1399. [2015.06.10 16:29:22 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
  1400. [2015.06.10 16:29:22 | 000,522,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
  1401. [2015.06.10 16:29:22 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
  1402. [2015.06.10 16:29:22 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
  1403. [2015.06.10 16:29:22 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
  1404. [2015.06.10 16:29:22 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
  1405. [2015.06.10 16:29:22 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
  1406. [2015.06.10 16:29:22 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
  1407. [2015.06.10 16:29:22 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
  1408. [2015.06.10 16:29:22 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
  1409. [2015.06.10 16:29:22 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
  1410. [2015.06.10 16:29:22 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
  1411. [2015.06.10 16:29:22 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
  1412. [2015.06.10 16:29:22 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
  1413. [2015.06.10 16:29:22 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
  1414. [2015.06.10 16:29:22 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
  1415. [2015.06.10 16:29:22 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
  1416. [2015.06.10 16:29:22 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
  1417. [2015.06.10 16:29:22 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
  1418. [2015.06.10 16:29:22 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
  1419. [2015.06.10 16:29:22 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
  1420. [2015.06.10 16:29:21 | 001,238,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
  1421. [2015.06.10 16:29:21 | 000,648,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
  1422. [2015.06.10 16:29:21 | 000,363,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
  1423. [2015.06.10 16:29:21 | 000,333,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
  1424. [2015.06.10 16:29:21 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
  1425. [2015.06.10 16:29:21 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
  1426. [2015.06.10 16:29:21 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
  1427. [2015.06.10 16:29:21 | 000,194,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
  1428. [2015.06.10 16:29:21 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
  1429. [2015.06.10 12:59:26 | 000,285,280 | ---- | M] (Acronis) -- C:\Windows\SysNative\drivers\afcdp.sys
  1430. [2015.06.10 12:59:22 | 001,263,200 | ---- | M] (Acronis) -- C:\Windows\SysNative\drivers\tdrpm273.sys
  1431. [2015.06.10 12:59:20 | 000,970,336 | ---- | M] (Acronis) -- C:\Windows\SysNative\drivers\timntr.sys
  1432. [2015.06.10 12:56:08 | 000,001,519 | ---- | M] () -- C:\Users\Stephanie\Desktop\CyberLink YouCam 5.lnk
  1433. [2015.06.10 12:19:23 | 000,000,032 | ---- | M] () -- C:\Windows\0
  1434. [2015.06.10 12:18:57 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_BtL2caScoIf_01009.Wdf
  1435. [2015.06.10 12:17:19 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\0
  1436. [2015.06.10 12:10:05 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
  1437. [2015.06.10 11:56:19 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01011.Wdf
  1438. [2015.06.10 11:56:07 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
  1439. [2015.06.10 11:56:06 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
  1440. [2015.06.10 11:52:32 | 000,015,806 | ---- | M] () -- C:\Windows\SysNative\results.xml
  1441. [2015.06.10 11:35:55 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
  1442. [2015.06.10 11:00:26 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
  1443. [2015.06.10 10:37:04 | 000,177,271 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
  1444. [2015.06.10 10:37:04 | 000,177,271 | ---- | M] () -- C:\Windows\SysNative\license.rtf
  1445. [2015.06.01 18:21:28 | 000,404,052 | ---- | M] () -- C:\Users\Stephanie\Documents\IMG_20150601_0002.jpg
  1446. [2015.06.01 18:20:49 | 000,565,788 | ---- | M] () -- C:\Users\Stephanie\Documents\IMG_20150601_0001.jpg
  1447. [2015.05.25 20:24:00 | 005,569,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
  1448. [2015.05.25 20:21:21 | 001,728,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
  1449. [2015.05.25 20:19:27 | 000,362,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
  1450. [2015.05.25 20:19:27 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
  1451. [2015.05.25 20:19:27 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
  1452. [2015.05.25 20:19:26 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
  1453. [2015.05.25 20:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\diagtrack.dll
  1454. [2015.05.25 20:19:10 | 000,879,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
  1455. [2015.05.25 20:19:10 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
  1456. [2015.05.25 20:19:10 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
  1457. [2015.05.25 20:19:09 | 000,503,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
  1458. [2015.05.25 20:19:09 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sechost.dll
  1459. [2015.05.25 20:19:09 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
  1460. [2015.05.25 20:19:09 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
  1461. [2015.05.25 20:19:04 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
  1462. [2015.05.25 20:19:04 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
  1463. [2015.05.25 20:19:02 | 001,461,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
  1464. [2015.05.25 20:19:02 | 001,162,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
  1465. [2015.05.25 20:19:02 | 000,424,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
  1466. [2015.05.25 20:18:56 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
  1467. [2015.05.25 20:18:54 | 000,879,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
  1468. [2015.05.25 20:18:45 | 000,404,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tracerpt.exe
  1469. [2015.05.25 20:18:45 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\typeperf.exe
  1470. [2015.05.25 20:18:39 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
  1471. [2015.05.25 20:18:32 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
  1472. [2015.05.25 20:18:30 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\relog.exe
  1473. [2015.05.25 20:18:19 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\logman.exe
  1474. [2015.05.25 20:18:11 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\diskperf.exe
  1475. [2015.05.25 20:18:08 | 000,338,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
  1476. [2015.05.25 20:18:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
  1477. [2015.05.25 20:14:26 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
  1478. [2015.05.25 20:14:04 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
  1479. [2015.05.25 20:11:40 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
  1480. [2015.05.25 20:11:40 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
  1481. [2015.05.25 20:11:40 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
  1482. [2015.05.25 20:11:40 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
  1483. [2015.05.25 20:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
  1484. [2015.05.25 20:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
  1485. [2015.05.25 20:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
  1486. [2015.05.25 20:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
  1487. [2015.05.25 20:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
  1488. [2015.05.25 20:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
  1489. [2015.05.25 20:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
  1490. [2015.05.25 20:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
  1491. [2015.05.25 20:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
  1492. [2015.05.25 20:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
  1493. [2015.05.25 20:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
  1494. [2015.05.25 20:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
  1495. [2015.05.25 20:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
  1496. [2015.05.25 20:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
  1497. [2015.05.25 20:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
  1498. [2015.05.25 20:11:39 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
  1499. [2015.05.25 20:11:39 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
  1500. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
  1501. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
  1502. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
  1503. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
  1504. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
  1505. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
  1506. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
  1507. [2015.05.25 20:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
  1508. [2015.05.25 20:11:38 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
  1509. [2015.05.25 20:07:34 | 003,989,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
  1510. [2015.05.25 20:07:34 | 003,934,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
  1511. [2015.05.25 20:01:42 | 000,635,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
  1512. [2015.05.25 20:01:35 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
  1513. [2015.05.25 20:00:44 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\typeperf.exe
  1514. [2015.05.25 20:00:40 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tracerpt.exe
  1515. [2015.05.25 20:00:28 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
  1516. [2015.05.25 20:00:25 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\relog.exe
  1517. [2015.05.25 20:00:17 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\logman.exe
  1518. [2015.05.25 20:00:09 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\diskperf.exe
  1519. [2015.05.25 20:00:04 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
  1520. [2015.05.25 19:59:52 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
  1521. [2015.05.25 19:57:31 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
  1522. [2015.05.25 19:57:15 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
  1523. [2015.05.25 19:55:18 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
  1524. [2015.05.25 19:55:18 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
  1525. [2015.05.25 19:55:18 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
  1526. [2015.05.25 19:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
  1527. [2015.05.25 19:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
  1528. [2015.05.25 19:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
  1529. [2015.05.25 19:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
  1530. [2015.05.25 19:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
  1531. [2015.05.25 19:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
  1532. [2015.05.25 19:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
  1533. [2015.05.25 19:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
  1534. [2015.05.25 19:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
  1535. [2015.05.25 19:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
  1536. [2015.05.25 19:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
  1537. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
  1538. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
  1539. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
  1540. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
  1541. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
  1542. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
  1543. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
  1544. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
  1545. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
  1546. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
  1547. [2015.05.25 19:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
  1548. [2015.05.25 19:55:17 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
  1549. [2015.05.25 19:00:56 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\UtcResources.dll
  1550. [2015.05.25 18:50:38 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
  1551. [2015.05.25 18:50:36 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
  1552. [2015.05.25 18:48:25 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
  1553. [2015.05.25 18:48:25 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
  1554. [2015.05.25 18:48:25 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
  1555. [2015.05.25 18:48:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
  1556. [2015.05.23 05:15:40 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
  1557. [2015.05.23 05:15:02 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
  1558. [2015.05.23 05:14:51 | 000,341,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
  1559. [2015.05.23 05:13:48 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
  1560. [2015.05.23 05:08:33 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
  1561. [2015.05.23 05:06:27 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
  1562. [2015.05.23 05:05:21 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
  1563. [2015.05.23 05:05:06 | 000,664,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
  1564. [2015.05.23 05:04:50 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
  1565. [2015.05.23 04:52:43 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
  1566. [2015.05.23 04:49:54 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
  1567. [2015.05.23 04:48:21 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
  1568. [2015.05.23 04:37:45 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
  1569. [2015.05.23 04:37:25 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
  1570. [2015.05.23 04:14:55 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
  1571. [2015.05.23 03:54:54 | 000,016,303 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
  1572. [2015.05.22 21:16:44 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
  1573. [2015.05.22 21:01:42 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
  1574. [2015.05.22 21:00:54 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
  1575. [2015.05.22 21:00:47 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
  1576. [2015.05.22 21:00:25 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
  1577. [2015.05.22 20:59:27 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
  1578. [2015.05.22 20:52:27 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
  1579. [2015.05.22 20:52:21 | 006,026,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
  1580. [2015.05.22 20:48:50 | 000,633,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
  1581. [2015.05.22 20:47:49 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
  1582. [2015.05.22 20:47:34 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
  1583. [2015.05.22 20:47:12 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
  1584. [2015.05.22 20:47:03 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
  1585. [2015.05.22 20:40:17 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
  1586. [2015.05.22 20:36:15 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
  1587. [2015.05.22 20:29:31 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
  1588. [2015.05.22 20:25:02 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
  1589. [2015.05.22 20:24:10 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
  1590. [2015.05.22 20:21:18 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
  1591. [2015.05.22 20:18:41 | 000,700,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
  1592. [2015.05.22 20:18:29 | 000,757,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
  1593. [2015.05.22 20:18:24 | 000,423,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
  1594. [2015.05.22 20:18:22 | 001,021,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
  1595. [2015.05.22 20:18:21 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
  1596. [2015.05.22 20:18:21 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
  1597. [2015.05.22 20:13:03 | 001,119,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
  1598. [2015.05.22 20:07:35 | 000,720,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
  1599. [2015.05.22 20:06:53 | 000,801,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
  1600. [2015.05.22 20:05:28 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
  1601. [2015.05.22 20:05:06 | 002,125,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
  1602. [2015.05.22 19:26:39 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
  1603. [2015.05.22 19:03:33 | 000,016,303 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
  1604. [2015.05.21 15:19:52 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
  1605. [2015.05.18 22:16:32 | 000,842,440 | ---- | M] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\klif.sys
  1606. [2015.05.18 22:16:32 | 000,056,008 | ---- | M] (Kaspersky Lab ZAO) -- C:\Windows\SysNative\drivers\kldisk.sys
  1607. [1 C:\Users\Stephanie\Desktop\*.tmp files -> C:\Users\Stephanie\Desktop\*.tmp -> ]
  1608.  
  1609. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  1610.  
  1611. [2015.06.12 12:40:06 | 000,002,121 | ---- | C] () -- C:\Users\Stephanie\Desktop\IJ Scan Utility.lnk
  1612. [2015.06.12 12:39:33 | 000,000,828 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
  1613. [2015.06.12 12:32:35 | 000,098,048 | ---- | C] () -- C:\Windows\SysWow64\CNC176BD.TBL
  1614. [2015.06.11 10:39:39 | 000,003,037 | ---- | C] () -- C:\Users\Stephanie\Desktop\Excel 2013.lnk
  1615. [2015.06.11 10:39:25 | 000,002,937 | ---- | C] () -- C:\Users\Stephanie\Desktop\PowerPoint 2013.lnk
  1616. [2015.06.11 10:39:22 | 000,003,015 | ---- | C] () -- C:\Users\Stephanie\Desktop\Word 2013.lnk
  1617. [2015.06.11 10:32:25 | 000,001,979 | ---- | C] () -- C:\Users\Public\Desktop\Samsung Kies 3.lnk
  1618. [2015.06.11 00:22:50 | 000,002,699 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
  1619. [2015.06.10 22:37:05 | 000,001,169 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
  1620. [2015.06.10 22:37:05 | 000,001,157 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
  1621. [2015.06.10 22:34:36 | 000,001,181 | ---- | C] () -- C:\Users\Public\Desktop\Ashampoo Burning Studio 9.lnk
  1622. [2015.06.10 22:31:07 | 000,001,053 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
  1623. [2015.06.10 22:30:45 | 000,002,108 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
  1624. [2015.06.10 22:30:45 | 000,002,096 | ---- | C] () -- C:\Users\Public\Desktop\alte Emails.lnk
  1625. [2015.06.10 22:27:11 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
  1626. [2015.06.10 22:26:18 | 000,001,076 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
  1627. [2015.06.10 22:25:30 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
  1628. [2015.06.10 21:40:44 | 000,007,623 | ---- | C] () -- C:\Users\Stephanie\AppData\Local\Resmon.ResmonCfg
  1629. [2015.06.10 19:05:06 | 000,000,118 | ---- | C] () -- C:\Windows\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
  1630. [2015.06.10 18:57:03 | 000,016,303 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
  1631. [2015.06.10 18:57:01 | 000,016,303 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
  1632. [2015.06.10 18:47:18 | 000,000,401 | ---- | C] () -- C:\Windows\SysNative\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
  1633. [2015.06.10 15:12:45 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
  1634. [2015.06.10 12:56:08 | 000,001,519 | ---- | C] () -- C:\Users\Stephanie\Desktop\CyberLink YouCam 5.lnk
  1635. [2015.06.10 12:20:45 | 000,003,620 | ---- | C] () -- C:\Windows\SysWow64\LOCALSERVICE.INI
  1636. [2015.06.10 12:20:45 | 000,000,043 | ---- | C] () -- C:\Windows\SysWow64\LOCALDEVICE.INI
  1637. [2015.06.10 12:18:57 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_BtL2caScoIf_01009.Wdf
  1638. [2015.06.10 12:17:19 | 000,000,032 | ---- | C] () -- C:\Windows\0
  1639. [2015.06.10 12:17:19 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\0
  1640. [2015.06.10 12:10:05 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
  1641. [2015.06.10 11:56:19 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01011.Wdf
  1642. [2015.06.10 11:56:07 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
  1643. [2015.06.10 11:56:06 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf
  1644. [2015.06.10 11:56:00 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
  1645. [2015.06.10 11:54:03 | 000,013,973 | ---- | C] () -- C:\Windows\SysNative\RaCoInst.dat
  1646. [2015.06.10 11:52:32 | 000,015,806 | ---- | C] () -- C:\Windows\SysNative\results.xml
  1647. [2015.06.10 11:43:57 | 000,031,813 | ---- | C] () -- C:\Windows\SysNative\SNOWDTS.XML
  1648. [2015.06.10 11:43:57 | 000,001,646 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Sound.lnk
  1649. [2015.06.10 11:35:55 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
  1650. [2015.06.10 11:02:35 | 001,596,206 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
  1651. [2015.06.10 11:00:26 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
  1652. [2015.06.10 10:40:50 | 000,001,431 | ---- | C] () -- C:\Users\Stephanie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
  1653. [2015.06.10 10:36:57 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
  1654. [2015.06.10 10:36:42 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
  1655. [2015.06.10 10:33:45 | 3155,382,272 | -HS- | C] () -- C:\hiberfil.sys
  1656. [2015.06.09 23:03:58 | 000,281,975 | ---- | C] () -- C:\Users\Stephanie\Desktop\Mann, Stephanie.EST2014
  1657. [2015.06.09 23:03:58 | 000,188,503 | ---- | C] () -- C:\Users\Stephanie\Desktop\Schlosser, Florian ESt.V2012
  1658. [2015.06.09 23:03:58 | 000,181,499 | ---- | C] () -- C:\Users\Stephanie\Desktop\Lebenslauf.pdf
  1659. [2015.06.09 23:03:58 | 000,168,096 | ---- | C] () -- C:\Users\Stephanie\Desktop\Mann, Stephanie.V2012
  1660. [2015.06.09 23:03:57 | 011,076,095 | ---- | C] () -- C:\Users\Stephanie\Desktop\1378843468.6083The Study Of Language (4th Edition(.pdf
  1661. [2015.06.09 23:03:56 | 000,188,909 | ---- | C] () -- C:\Users\Stephanie\Sprachmemo_001.m4a
  1662. [2015.06.09 22:55:55 | 000,132,008 | ---- | C] () -- C:\Users\Stephanie\Documents\Versicherungsschein.pdf
  1663. [2015.06.09 22:55:55 | 000,108,876 | ---- | C] () -- C:\Users\Stephanie\Documents\Video call snapshot 8.png
  1664. [2015.06.09 22:55:55 | 000,107,487 | ---- | C] () -- C:\Users\Stephanie\Documents\Video call snapshot 6.png
  1665. [2015.06.09 22:55:55 | 000,023,738 | ---- | C] () -- C:\Users\Stephanie\Documents\Verwaltung (1).odt
  1666. [2015.06.09 22:55:54 | 002,637,312 | ---- | C] () -- C:\Users\Stephanie\Documents\DokumentDatenauszug'Station7DasW...'.shs
  1667. [2015.06.09 22:55:54 | 001,308,838 | ---- | C] () -- C:\Users\Stephanie\Documents\IMG_20150226_0001.jpg
  1668. [2015.06.09 22:55:54 | 000,758,169 | ---- | C] () -- C:\Users\Stephanie\Documents\IMG_20150222_0001.jpg
  1669. [2015.06.09 22:55:54 | 000,688,875 | ---- | C] () -- C:\Users\Stephanie\Documents\IMG_20150222_0002.jpg
  1670. [2015.06.09 22:55:54 | 000,565,788 | ---- | C] () -- C:\Users\Stephanie\Documents\IMG_20150601_0001.jpg
  1671. [2015.06.09 22:55:54 | 000,404,052 | ---- | C] () -- C:\Users\Stephanie\Documents\IMG_20150601_0002.jpg
  1672. [2015.06.09 22:55:53 | 006,945,792 | ---- | C] () -- C:\Users\Stephanie\Documents\b4324mux.exe
  1673. [2015.06.09 22:55:53 | 001,534,705 | ---- | C] () -- C:\Users\Stephanie\Documents\Aufgabe1MicrosoftWord-Dokument.zip
  1674. [2015.06.09 22:55:52 | 000,086,318 | ---- | C] () -- C:\Users\Stephanie\Documents\Anschreiben Agentur für Arbeit Regensburg.pdf
  1675. [2015.03.19 21:01:54 | 000,187,904 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
  1676. [2015.03.19 21:01:48 | 017,289,048 | ---- | C] () -- C:\Windows\SysWow64\igd11dxva32.dll
  1677. [2013.11.20 10:44:18 | 000,001,060 | ---- | C] () -- C:\Windows\SysWow64\bscs.ini
  1678. [2013.11.01 15:47:12 | 000,018,168 | ---- | C] () -- C:\Windows\SysWow64\SCChangeMonitor.dll
  1679. [2013.11.01 15:47:04 | 000,080,728 | ---- | C] () -- C:\Windows\SysWow64\BSVoIPComm.dll
  1680. [2013.11.01 15:47:04 | 000,056,568 | ---- | C] () -- C:\Windows\SysWow64\BSWMPPlugin.dll
  1681. [2013.11.01 15:47:02 | 000,088,824 | ---- | C] () -- C:\Windows\SysWow64\BsVistaCommon.dll
  1682. [2013.11.01 15:46:56 | 000,026,360 | ---- | C] () -- C:\Windows\SysWow64\BsTrace.dll
  1683. [2013.11.01 15:46:54 | 000,056,152 | ---- | C] () -- C:\Windows\SysWow64\BSSkypeAgent.dll
  1684. [2013.11.01 15:46:50 | 000,070,904 | ---- | C] () -- C:\Windows\SysWow64\BsProfileFunc.dll
  1685. [2013.11.01 15:46:46 | 000,360,184 | ---- | C] () -- C:\Windows\SysWow64\BsExtendFunc.dll
  1686.  
  1687. [color=#E56717]========== ZeroAccess Check ==========[/color]
  1688.  
  1689. [2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
  1690.  
  1691. [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  1692.  
  1693. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  1694.  
  1695. [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
  1696.  
  1697. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
  1698.  
  1699. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  1700. "" = C:\Windows\SysNative\shell32.dll -- [2015.02.13 07:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
  1701. "ThreadingModel" = Apartment
  1702.  
  1703. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  1704. "" = %SystemRoot%\system32\shell32.dll -- [2015.02.13 07:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
  1705. "ThreadingModel" = Apartment
  1706.  
  1707. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
  1708. "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
  1709. "ThreadingModel" = Free
  1710.  
  1711. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
  1712. "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
  1713. "ThreadingModel" = Free
  1714.  
  1715. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
  1716. "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
  1717. "ThreadingModel" = Both
  1718.  
  1719. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
  1720.  
  1721. [color=#E56717]========== LOP Check ==========[/color]
  1722.  
  1723. [2015.06.10 19:11:02 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\Acronis
  1724. [2015.06.10 22:35:05 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\Ashampoo
  1725. [2015.06.12 12:37:19 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\Canon
  1726. [2015.06.11 11:09:30 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\DAEMON Tools Lite
  1727. [2015.06.16 20:13:56 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\GoodSync
  1728. [2015.06.10 22:15:29 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\HD Tune Pro
  1729. [2015.06.10 12:55:50 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\IDT
  1730. [2015.06.11 10:32:16 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\Samsung
  1731. [2015.06.10 11:57:29 | 000,000,000 | ---D | M] -- C:\Users\Stephanie\AppData\Roaming\Synaptics
  1732.  
  1733. [color=#E56717]========== Purity Check ==========[/color]
  1734.  
  1735.  
  1736.  
  1737. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement