﻿WARNING: PID: 4 - Failed to open process. 
Handles: 1520 
  Type:  3, Cnt:  32 	() 
  Type:  4, Cnt: 191 	() 
  Type:  5, Cnt:  63 	() 
  Type:  7, Cnt: 356 	() 
  Type:  8, Cnt:  12 	() 
  Type: 12, Cnt:  63 	() 
  Type: 13, Cnt:   1 	() 
  Type: 16, Cnt:  17 	() 
  Type: 21, Cnt:   2 	() 
  Type: 23, Cnt:  12 	() 
  Type: 29, Cnt:   2 	() 
  Type: 30, Cnt:  12 	() 
  Type: 31, Cnt: 564 	() 
  Type: 32, Cnt:  12 	() 
  Type: 34, Cnt:  24 	() 
  Type: 36, Cnt:   7 	() 
  Type: 37, Cnt:  16 	() 
  Type: 38, Cnt:   1 	() 
  Type: 39, Cnt:  85 	() 
  Type: 40, Cnt:  40 	() 
  Type: 46, Cnt:   7 	() 
  Type: 48, Cnt:   1 	() 
WARNING: Failed to create module snapshot. (5) 
WARNING: PID: 356 - Failed to open process. 
Handles: 49 
  Type:  3, Cnt:   3 	() 
  Type:  7, Cnt:   3 	() 
  Type: 12, Cnt:   4 	() 
  Type: 17, Cnt:   6 	() 
  Type: 24, Cnt:   3 	() 
  Type: 29, Cnt:   3 	() 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:  10 	() 
  Type: 36, Cnt:   1 	() 
  Type: 39, Cnt:   1 	() 
  Type: 40, Cnt:   6 	() 
  Type: 43, Cnt:   2 	() 
WARNING: Failed to create module snapshot. (5) 
WARNING: PID: 544 - Failed to open process. 
Handles: 402 
  Type:  3, Cnt:   8 	() 
  Type:  4, Cnt:   2 	() 
  Type:  7, Cnt:  44 	() 
  Type:  8, Cnt:  94 	() 
  Type: 12, Cnt:  35 	() 
  Type: 13, Cnt:   1 	() 
  Type: 16, Cnt:   6 	() 
  Type: 17, Cnt:   4 	() 
  Type: 20, Cnt:   1 	() 
  Type: 24, Cnt:   2 	() 
  Type: 29, Cnt:   2 	() 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:   6 	() 
  Type: 36, Cnt: 130 	() 
  Type: 39, Cnt:   5 	() 
  Type: 40, Cnt:  49 	() 
  Type: 43, Cnt:   7 	() 
WARNING: Failed to create module snapshot. (5) 
WARNING: PID: 644 - Failed to open process. 
Handles: 87 
  Type:  3, Cnt:   2 	() 
  Type:  7, Cnt:   2 	() 
  Type:  8, Cnt:   1 	() 
  Type: 12, Cnt:  16 	() 
  Type: 15, Cnt:   2 	() 
  Type: 17, Cnt:   4 	() 
  Type: 20, Cnt:   2 	() 
  Type: 21, Cnt:   3 	() 
  Type: 24, Cnt:   2 	() 
  Type: 29, Cnt:   2 	() 
  Type: 30, Cnt:   8 	() 
  Type: 31, Cnt:  11 	() 
  Type: 39, Cnt:  12 	() 
  Type: 40, Cnt:   6 	() 
  Type: 43, Cnt:  14 	() 
WARNING: Failed to create module snapshot. (5) 
WARNING: PID: 652 - Failed to open process. 
Handles: 600 
  Type:  3, Cnt:   8 	() 
  Type:  4, Cnt:   5 	() 
  Type:  7, Cnt:  44 	() 
  Type:  8, Cnt: 107 	() 
  Type: 12, Cnt:  35 	() 
  Type: 13, Cnt:   1 	() 
  Type: 16, Cnt:   4 	() 
  Type: 17, Cnt:   4 	() 
  Type: 20, Cnt:   1 	() 
  Type: 23, Cnt:   8 	() 
  Type: 24, Cnt:   2 	() 
  Type: 29, Cnt:   2 	() 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:   4 	() 
  Type: 36, Cnt: 307 	() 
  Type: 39, Cnt:   6 	() 
  Type: 40, Cnt:  50 	() 
  Type: 43, Cnt:   6 	() 
WARNING: Failed to create module snapshot. (5) 
 
winlogon.exe 
PID: 732, Threads: 4, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 9120 K (Peak: 13360 K), CommitSize: 2032 K, PageFaults: 15533 
TIME - Start 29.01.2016 12:19:23, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 261518 (3), Write: 0 (0), Other: 214632 (6629) 
CmdLine: winlogon.exe 
   ## Type: 3 -> Directory 
   ## Type: 12 -> Event 
   ## Type: 31 -> File 
   ## Type: 43 -> DuplicateHandle error: 0x32 
   ## Type: 40 -> ALPC Port 
   ## Type: 29 -> IoCompletion 
   ## Type: 24 -> TpWorkerFactory 
   ## Type: 17 -> IRTimer 
   ## Type: 21 -> Desktop 
   ## Type: 39 -> Key 
   ## Type: 15 -> Semaphore 
   ## Type: 8 -> Thread 
   ## Type: 20 -> WindowStation 
   ## Type: 36 -> Section 
   ## Type: 5 -> Token 
   ## Type: 6 -> Job 
   ## Type: 7 -> Process 
Handles: 204 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   6 	(Token) 
  Type:  6, Cnt:   1 	(Job) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:  44 	(Event) 
  Type: 15, Cnt:  18 	(Semaphore) 
  Type: 17, Cnt:   7 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   3 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  19 	() 
  Type: 31, Cnt:   5 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  20 	(Key) 
  Type: 40, Cnt:  15 	(ALPC Port) 
  Type: 43, Cnt:  48 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7733A0000 +606208          584704  10.0.10586.63        C:\WINDOWS\system32\winlogon.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\system32\bcrypt.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\winsta.dll 
  0x00007FFE74BD0000 +106496           80384  10.0.10586.0         C:\WINDOWS\system32\UXINIT.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\UxTheme.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\system32\DPAPI.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE74950000 +81920            58208  10.0.10586.0         C:\WINDOWS\SYSTEM32\dwminit.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         C:\WINDOWS\system32\apphelp.dll 
  0x00007FFE730F0000 +65536            43520  10.0.10586.63        C:\WINDOWS\SYSTEM32\usermgrcli.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         C:\WINDOWS\system32\MPR.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\system32\USERENV.dll 
  0x00007FFE629A0000 +86016            67584  10.0.10586.0         C:\WINDOWS\SYSTEM32\profext.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\firewallapi.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
WARNING: PID: 768 - Failed to open process. 
Handles: 286 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  19 	(Token) 
  Type:  7, Cnt:  31 	(Process) 
  Type:  8, Cnt:   5 	(Thread) 
  Type: 12, Cnt:  52 	(Event) 
  Type: 15, Cnt:  14 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  40 	() 
  Type: 31, Cnt:  16 	(File) 
  Type: 39, Cnt:  28 	(Key) 
  Type: 40, Cnt:  45 	(ALPC Port) 
  Type: 43, Cnt:  22 	(?) 
WARNING: Failed to create module snapshot. (5) 
 
lsass.exe 
PID: 784, Threads: 11, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 15172 K (Peak: 15632 K), CommitSize: 6736 K, PageFaults: 16902 
TIME - Start 29.01.2016 12:19:23, KernelTime: 00:00:03, UserTime: 00:00:04 
IO - Read: 1061964 (1643), Write: 64783 (277), Other: 2706640 (25038) 
CmdLine: C:\WINDOWS\system32\lsass.exe 
   ## Type: 13 -> Mutant 
Handles: 1376 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  97 	(Token) 
  Type:  7, Cnt:  61 	(Process) 
  Type:  8, Cnt:  12 	(Thread) 
  Type: 12, Cnt: 218 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt: 552 	(Semaphore) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   4 	(IoCompletion) 
  Type: 30, Cnt:  84 	() 
  Type: 31, Cnt:  25 	(File) 
  Type: 36, Cnt:   2 	(Section) 
  Type: 39, Cnt: 112 	(Key) 
  Type: 40, Cnt:  94 	(ALPC Port) 
  Type: 43, Cnt: 100 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF756360000 +69632            57912  10.0.10586.0         C:\WINDOWS\system32\lsass.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75DE0000 +1425408        1387008  10.0.10586.17        C:\WINDOWS\system32\lsasrv.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE75CD0000 +880640          848896  10.0.10586.0         C:\WINDOWS\SYSTEM32\samsrv.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\system32\bcrypt.dll 
  0x00007FFE75CA0000 +159744          146744  10.0.10586.0         C:\WINDOWS\system32\ncrypt.dll 
  0x00007FFE75C60000 +237568          239592  10.0.10586.0         C:\WINDOWS\system32\NTASN1.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptprimitives.dll 
  0x0000029AD3240000 +12288             3072  10.0.10586.0         C:\WINDOWS\system32\msprivs.DLL 
  0x00007FFE75C40000 +86016            64000  10.0.10586.0         C:\WINDOWS\SYSTEM32\netprovfw.dll 
  0x00007FFE75C10000 +135168          109568  10.0.10586.0         C:\WINDOWS\system32\JOINUTIL.DLL 
  0x00007FFE75BE0000 +151552          112128  10.0.10586.0         C:\WINDOWS\system32\negoexts.DLL 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE75AD0000 +1019904         969728  10.0.10586.3         C:\WINDOWS\system32\kerberos.DLL 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\system32\CRYPTSP.dll 
  0x00007FFE75A80000 +163840          152440  10.0.10586.0         C:\WINDOWS\system32\KerbClientShared.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE75A60000 +86016            70312  10.0.10586.0         C:\WINDOWS\system32\cryptdll.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE759A0000 +380928          361824  10.0.10586.0         C:\WINDOWS\system32\msv1_0.DLL 
  0x00007FFE75990000 +49152            38792  10.0.10586.0         C:\WINDOWS\system32\NtlmShared.dll 
  0x00007FFE758B0000 +872448          846848  10.0.10586.0         C:\WINDOWS\system32\netlogon.DLL 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\system32\USERENV.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75870000 +114688           97792  10.0.10586.0         C:\WINDOWS\system32\tspkg.DLL 
  0x00007FFE75820000 +278528          238592  10.0.10586.0         C:\WINDOWS\system32\pku2u.DLL 
  0x00007FFE757E0000 +217088          197120  10.0.10586.0         C:\WINDOWS\system32\cloudAP.DLL 
  0x00007FFE75790000 +270336          250880  10.0.10586.0         C:\WINDOWS\SYSTEM32\MicrosoftAccountCloudAP.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\SYSTEM32\DPAPI.DLL 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75700000 +245760          222208  10.0.10586.0         C:\WINDOWS\system32\wdigest.DLL 
  0x00007FFE75680000 +499712          479232  10.0.10586.63        C:\WINDOWS\system32\schannel.DLL 
  0x00007FFE75660000 +110592           92160  10.0.10586.0         C:\WINDOWS\system32\PCPKsp.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE75590000 +569344          549376  10.0.10586.0         C:\WINDOWS\system32\PCPTPM12.dll 
  0x00007FFE75580000 +53248            42920  10.0.10586.0         C:\WINDOWS\system32\tbs.dll 
  0x00007FFE75550000 +135168          116736  10.0.10586.0         C:\WINDOWS\system32\efslsaext.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\system32\netutils.dll 
  0x00007FFE75500000 +217088          195072  10.0.10586.0         C:\WINDOWS\system32\dpapisrv.dll 
  0x00007FFE75490000 +49152            29184  10.0.10586.0         C:\WINDOWS\system32\SspiSrv.dll 
  0x00007FFE753C0000 +274432          251392  10.0.10586.0         C:\WINDOWS\system32\scecli.DLL 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\winsta.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\system32\DNSAPI.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE6A460000 +380928          361984  10.0.10586.0         C:\Windows\System32\vaultsvc.dll 
  0x00007FFE638F0000 +122880          110552  10.0.10586.0         C:\WINDOWS\system32\ncryptsslp.dll 
  0x00007FFE63890000 +348160          325632  10.0.10586.0         C:\WINDOWS\system32\ncryptprov.dll 
  0x00007FFE63860000 +163840          154976  10.0.10586.0         C:\WINDOWS\system32\dssenh.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE63840000 +81920            60928  10.0.10586.0         C:\WINDOWS\SYSTEM32\mskeyprotect.dll 
  0x00007FFE72C80000 +409600          400336  10.0.10586.0         C:\WINDOWS\SYSTEM32\wevtapi.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\system32\IPHLPAPI.DLL 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE6A3A0000 +786432          764928  10.0.10586.35        C:\WINDOWS\SYSTEM32\fveapi.dll 
  0x00007FFE5DBD0000 +143360           93696  10.0.10586.0         C:\Windows\System32\SecureTimeAggregator.dll 
  0x00007FFE73880000 +40960            26408  10.0.10586.0         C:\WINDOWS\system32\DSROLE.dll 
  0x00007FFE64440000 +192512          173056  10.0.10586.0         C:\Windows\System32\cryptnet.dll 
  0x00007FFE739A0000 +114688           97792  10.0.10586.0         C:\WINDOWS\system32\keyiso.dll 
  0x00007FFE75370000 +299008          277504  10.0.10586.0         C:\WINDOWS\system32\AUTHZ.dll 
  0x00007FFE637E0000 +106496           86528  10.0.10586.0         C:\WINDOWS\system32\certpoleng.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\system32\wkscli.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\system32\WINNSI.DLL 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\SYSTEM32\secur32.dll 
  0x00007FFE724D0000 +253952          240720  10.0.10586.0         C:\WINDOWS\system32\logoncli.dll 
  0x00007FFE76FC0000 +376832          352256  10.0.10586.0         C:\WINDOWS\system32\WLDAP32.dll 
 
svchost.exe 
PID: 884, Threads: 22, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 19852 K (Peak: 20840 K), CommitSize: 7064 K, PageFaults: 24638 
TIME - Start 29.01.2016 12:19:23, KernelTime: 00:00:02, UserTime: 00:00:01 
IO - Read: 547164 (41), Write: 228432 (22), Other: 3791416 (59268) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k DcomLaunch 
   ## Type: 47 -> DuplicateHandle error: 0x32 
   ## Type: 37 -> Session 
   ## Type: 16 -> Timer 
   ## Type: 44 -> DuplicateHandle error: 0x32 
Handles: 734 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  12 	(Token) 
  Type:  6, Cnt:  10 	(Job) 
  Type:  7, Cnt:  17 	(Process) 
  Type:  8, Cnt:  25 	(Thread) 
  Type: 12, Cnt: 202 	(Event) 
  Type: 13, Cnt:   5 	(Mutant) 
  Type: 15, Cnt:  98 	(Semaphore) 
  Type: 16, Cnt:   3 	(Timer) 
  Type: 17, Cnt:  18 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   9 	(TpWorkerFactory) 
  Type: 29, Cnt:  10 	(IoCompletion) 
  Type: 30, Cnt:  34 	() 
  Type: 31, Cnt:  42 	(File) 
  Type: 36, Cnt:   9 	(Section) 
  Type: 37, Cnt:   4 	(Session) 
  Type: 39, Cnt:  41 	(Key) 
  Type: 40, Cnt:  85 	(ALPC Port) 
  Type: 43, Cnt: 101 	(?) 
  Type: 44, Cnt:   1 	(?) 
  Type: 47, Cnt:   3 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE75250000 +131072          111616  10.0.10586.0         c:\windows\system32\umpnpmgr.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE75220000 +139264          113664  10.0.10586.0         c:\windows\system32\umpo.dll 
  0x00007FFE75200000 +90112            67072  10.0.10586.0         C:\WINDOWS\SYSTEM32\umpoext.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE75100000 +1015808         984576  10.0.10586.0         C:\WINDOWS\SYSTEM32\tdh.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE750C0000 +49152            34816  10.0.10586.0         C:\WINDOWS\SYSTEM32\HID.DLL 
  0x00007FFE74FD0000 +929792          904704  10.0.10586.0         c:\windows\system32\rpcss.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         c:\windows\system32\SspiCli.dll 
  0x00007FFE74EF0000 +610304          587776  10.0.10586.0         c:\windows\system32\bisrv.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE75F40000 +102400           84992  10.0.10586.0         c:\windows\system32\EventAggregation.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE74EC0000 +196608          178176  10.0.10586.0         c:\windows\system32\psmsrv.dll 
  0x00007FFE74E90000 +172032          167336  10.0.10586.0         c:\windows\system32\RMCLIENT.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE74D90000 +770048          729600  10.0.10586.0         c:\windows\system32\lsm.dll 
  0x00007FFE74D80000 +49152            26624  10.0.10586.0         c:\windows\system32\SYSNTFY.dll 
  0x00007FFE74CF0000 +577536          556544  10.0.10586.0         C:\WINDOWS\SYSTEM32\psmserviceexthost.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\WINDOWS\SYSTEM32\twinapi.appcore.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\System32\Userenv.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         c:\windows\system32\DEVOBJ.dll 
  0x00007FFE749E0000 +405504          380416  10.0.10586.0         c:\windows\system32\systemeventsbrokerserver.dll 
  0x00007FFE749A0000 +262144          239104  10.0.10586.0         c:\windows\system32\BrokerLib.dll 
  0x00007FFE74970000 +135168          111104  10.0.10586.0         c:\windows\system32\DAB.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE730F0000 +65536            43520  10.0.10586.63        C:\WINDOWS\SYSTEM32\usermgrcli.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE72290000 +49152            26624  10.0.10586.0         C:\WINDOWS\SYSTEM32\bi.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.DLL 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE62E60000 +65536            48128  10.0.10586.0         C:\WINDOWS\System32\BackgroundMediaPolicy.dll 
  0x00007FFE62E30000 +155648          136192  10.0.10586.0         C:\Windows\System32\ACPBackgroundManagerPolicy.dll 
  0x00007FFE62D70000 +49152            32256  10.0.10586.0         C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll 
  0x00007FFE62AE0000 +98304            81408  10.0.10586.0         C:\Windows\System32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll 
  0x00007FFE62AD0000 +57344            39936  10.0.10586.0         C:\WINDOWS\system32\SebBackgroundManagerPolicy.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE79A40000 +454656          442720  10.0.10586.0         C:\WINDOWS\system32\coml2.dll 
  0x00007FFE629D0000 +86016            66560  10.0.10586.0         C:\WINDOWS\system32\execmodelproxy.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE62F20000 +278528          254464  10.0.10586.0         C:\Windows\System32\execmodelclient.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         C:\Windows\System32\CoreMessaging.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE5FFA0000 +69632            46592  10.0.10586.0         C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         c:\windows\system32\msvcp110_win.dll 
  0x00007FFE5FF80000 +110592           98704  10.0.10586.0         C:\WINDOWS\SYSTEM32\capauthz.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         C:\WINDOWS\system32\apphelp.dll 
  0x00007FFE66840000 +2764800        2745856  10.0.10586.0         C:\Windows\System32\Windows.StateRepository.dll 
  0x00007FFE66780000 +606208          587776  10.0.10586.0         C:\Windows\System32\StateRepository.Core.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\system32\DPAPI.dll 
  0x00007FFE62820000 +69632            49152  10.0.10586.0         C:\Windows\System32\OnDemandBrokerClient.dll 
 
svchost.exe 
PID: 936, Threads: 16, Owner: NT AUTHORITY\NETWORK SERVICE 
MEM - WrkSet: 10276 K (Peak: 10388 K), CommitSize: 5368 K, PageFaults: 76121 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:04, UserTime: 00:00:08 
IO - Read: 0 (0), Write: 0 (0), Other: 58406 (2414) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k RPCSS 
Handles: 674 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt: 161 	(Token) 
  Type:  7, Cnt:   9 	(Process) 
  Type:  8, Cnt:  20 	(Thread) 
  Type: 12, Cnt: 264 	(Event) 
  Type: 15, Cnt:   7 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  13 	() 
  Type: 31, Cnt:  19 	(File) 
  Type: 36, Cnt:   4 	(Section) 
  Type: 39, Cnt:  15 	(Key) 
  Type: 40, Cnt: 118 	(ALPC Port) 
  Type: 43, Cnt:  30 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE74FB0000 +94208            79360  10.0.10586.0         c:\windows\system32\rpcepmap.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\sspicli.dll 
  0x00007FFE74F90000 +77824            65648  10.0.10586.0         C:\WINDOWS\system32\RpcRtRemote.dll 
  0x00007FFE74FD0000 +929792          904704  10.0.10586.0         c:\windows\system32\rpcss.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\system32\fwpuclnt.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\system32\bcrypt.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE5FF80000 +110592           98704  10.0.10586.0         C:\WINDOWS\SYSTEM32\capauthz.dll 
  0x00007FFE730F0000 +65536            43520  10.0.10586.63        C:\WINDOWS\SYSTEM32\usermgrcli.dll 
 
svchost.exe 
PID: 484, Threads: 54, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 43808 K (Peak: 94864 K), CommitSize: 21864 K, PageFaults: 726156 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:10, UserTime: 00:00:10 
IO - Read: 116244669 (8045), Write: 19163373 (1303), Other: 16059669 (87703) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k netsvcs 
   ## Type: 42 -> WmiGuid 
Handles: 1826 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  51 	(Token) 
  Type:  6, Cnt:   6 	(Job) 
  Type:  7, Cnt:  49 	(Process) 
  Type:  8, Cnt:  91 	(Thread) 
  Type: 12, Cnt: 677 	(Event) 
  Type: 13, Cnt:  38 	(Mutant) 
  Type: 15, Cnt:  76 	(Semaphore) 
  Type: 16, Cnt:   5 	(Timer) 
  Type: 17, Cnt:  22 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:  11 	(TpWorkerFactory) 
  Type: 29, Cnt:  12 	(IoCompletion) 
  Type: 30, Cnt: 137 	() 
  Type: 31, Cnt: 137 	(File) 
  Type: 36, Cnt:  16 	(Section) 
  Type: 39, Cnt:  69 	(Key) 
  Type: 40, Cnt: 108 	(ALPC Port) 
  Type: 42, Cnt:  12 	(WmiGuid) 
  Type: 43, Cnt: 290 	(?) 
  Type: 47, Cnt:  14 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE73A00000 +1363968        1338368  10.0.10586.0         c:\windows\system32\gpsvc.dll 
  0x00007FFE74D80000 +49152            26624  10.0.10586.0         c:\windows\system32\SYSNTFY.dll 
  0x00007FFE739E0000 +98304            80896  10.0.10586.0         c:\windows\system32\nlaapi.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         c:\windows\system32\USERENV.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE73880000 +40960            26408  10.0.10586.0         c:\windows\system32\DSROLE.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE734E0000 +262144          242688  10.0.10586.0         C:\WINDOWS\System32\netprofm.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE72FF0000 +1032192        1012224  10.0.10586.0         c:\windows\system32\schedsvc.dll 
  0x00007FFE72F50000 +266240          244224  10.0.10586.0         c:\windows\system32\UBPM.dll 
  0x00007FFE75F40000 +102400           84992  10.0.10586.0         c:\windows\system32\EventAggregation.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\Windows\System32\SspiCli.dll 
  0x00007FFE75370000 +299008          277504  10.0.10586.0         c:\windows\system32\AUTHZ.dll 
  0x00007FFE72A90000 +69632            45056  10.0.10586.0         c:\windows\system32\WMICLNT.dll 
  0x00007FFE72A20000 +348160          328192  10.0.10586.0         c:\windows\system32\profsvc.dll 
  0x00007FFE72960000 +45056            27136  10.0.10586.0         c:\windows\system32\lfsvc.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         c:\windows\system32\msvcp110_win.dll 
  0x00007FFE727E0000 +1556480        1537024  10.0.10586.0         c:\windows\system32\LocationFramework.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE749A0000 +262144          239104  10.0.10586.0         c:\windows\system32\BrokerLib.dll 
  0x00007FFE72770000 +397312          389984  10.0.10586.0         c:\windows\system32\wlanapi.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        c:\windows\system32\WINHTTP.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         c:\windows\system32\XmlLite.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE724A0000 +159744          134656  10.0.10586.0         C:\WINDOWS\SYSTEM32\profsvcext.dll 
  0x00007FFE76FC0000 +376832          352256  10.0.10586.0         C:\WINDOWS\system32\WLDAP32.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         c:\windows\system32\netutils.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE724D0000 +253952          240720  10.0.10586.0         c:\windows\system32\logoncli.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE730F0000 +65536            43520  10.0.10586.63        C:\WINDOWS\SYSTEM32\usermgrcli.dll 
  0x00007FFE71510000 +450560          429056  10.0.10586.0         C:\WINDOWS\system32\taskcomp.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE72130000 +937984          912384  10.0.10586.63        c:\windows\system32\usermgr.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE71E00000 +192512          173056  10.0.10586.0         C:\WINDOWS\SYSTEM32\WPTaskScheduler.dll 
  0x00007FFE71DA0000 +53248            32256  10.0.10586.0         C:\WINDOWS\SYSTEM32\CSystemEventsBrokerClient.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         c:\windows\system32\wkscli.dll 
  0x00007FFE71C40000 +266240          248832  10.0.10586.63        C:\Windows\System32\usermgrproxy.dll 
  0x00007FFE715E0000 +188416          169984  10.0.10586.0         C:\WINDOWS\SYSTEM32\netjoin.dll 
  0x00007FFE715C0000 +131072          108032  10.0.10586.0         C:\Windows\System32\LocationWinPalMisc.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\Windows\System32\DEVOBJ.dll 
  0x00007FFE75C10000 +135168          109568  10.0.10586.0         C:\WINDOWS\SYSTEM32\JoinUtil.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         c:\windows\system32\WTSAPI32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         c:\windows\system32\WINSTA.dll 
  0x00007FFE6FFE0000 +225280          199168  10.0.10586.0         C:\Windows\System32\GnssAdapter.dll 
  0x00007FFE74940000 +32768            13824  10.0.10586.0         c:\windows\system32\DABAPI.dll 
  0x00007FFE6FF40000 +348160          334736  10.0.10586.11        C:\WINDOWS\SYSTEM32\policymanager.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE72290000 +49152            26624  10.0.10586.0         C:\WINDOWS\SYSTEM32\bi.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\System32\PROPSYS.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE6F960000 +77824            59392  10.0.10586.0         c:\windows\system32\themeservice.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE6F760000 +94208            73216  10.0.10586.0         c:\windows\system32\sens.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc.DLL 
  0x00007FFE6DB20000 +245760          225280  10.0.10586.0         c:\windows\system32\wbem\wmisvc.dll 
  0x00007FFE6DB70000 +520192          471040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wbemcomn.dll 
  0x00007FFE6D630000 +1581056        1558528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VSSAPI.DLL 
  0x00007FFE6D610000 +98304            70144  10.0.10586.0         C:\WINDOWS\SYSTEM32\VssTrace.DLL 
  0x00007FFE6DB00000 +102400           79360  10.0.10586.0         C:\WINDOWS\SYSTEM32\samcli.dll 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\SYSTEM32\SAMLIB.dll 
  0x00007FFE6D3E0000 +1273856        1253376  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemcore.dll 
  0x00007FFE6D360000 +475136          454144  10.0.10586.0         C:\WINDOWS\system32\wbem\esscli.dll 
  0x00007FFE6D260000 +1007616         987648  10.0.10586.0         C:\WINDOWS\system32\wbem\FastProx.dll 
  0x00007FFE72C80000 +409600          400336  10.0.10586.0         C:\WINDOWS\SYSTEM32\wevtapi.dll 
  0x00007FFE6D240000 +81920            62976  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemsvc.dll 
  0x00007FFE6D210000 +151552          126976  10.0.10586.0         C:\WINDOWS\system32\wbem\wmiutils.dll 
  0x00007FFE6D1A0000 +409600          382464  10.0.10586.0         C:\WINDOWS\system32\wbem\repdrvfs.dll 
  0x00007FFE6D030000 +876544          851968  10.0.10586.0         C:\WINDOWS\system32\wbem\wmiprvsd.dll 
  0x00007FFE6D010000 +90112            71168  10.0.10586.0         C:\WINDOWS\SYSTEM32\NCObjAPI.DLL 
  0x00007FFE6CF80000 +540672          518656  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemess.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE6A570000 +630784          608768  10.0.10586.0         c:\windows\system32\shsvcs.dll 
  0x00007FFE6A3A0000 +786432          764928  10.0.10586.35        c:\windows\system32\FVEAPI.dll 
  0x00007FFE6A1E0000 +126976          115040  10.0.10586.35        c:\windows\system32\NetSetupApi.dll 
  0x00007FFE69B20000 +335872          312832  10.0.10586.0         C:\Windows\System32\ProximityService.dll 
  0x00007FFE69790000 +184320          167936  10.0.10586.63        C:\WINDOWS\system32\ProximityCommon.dll 
  0x00007FFE69B10000 +36864            16896  10.0.10586.0         C:\WINDOWS\system32\ProximityCommonPal.dll 
  0x00007FFE69B00000 +65536            43520  10.0.10586.0         C:\WINDOWS\system32\ProximityServicePAL.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\firewallapi.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE750C0000 +49152            34816  10.0.10586.0         c:\windows\system32\HID.DLL 
  0x00007FFE691E0000 +995328          958464  10.0.10586.0         c:\windows\system32\iphlpsvc.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         c:\windows\system32\fwpuclnt.dll 
  0x00007FFE6A760000 +81920            62464  10.0.10586.0         c:\windows\system32\rtutils.dll 
  0x00007FFE6CA50000 +266240          258280  10.0.10586.0         C:\WINDOWS\system32\sqmapi.dll 
  0x00007FFE691B0000 +151552          128512  10.0.10586.0         C:\WINDOWS\system32\httpprxm.dll 
  0x00007FFE69370000 +98304            79360  10.0.10586.0         C:\WINDOWS\system32\adhsvc.dll 
  0x00007FFE69430000 +36864            18944  10.0.10586.0         C:\WINDOWS\SYSTEM32\httpprxc.dll 
  0x00007FFE6A200000 +495616          474624  10.0.10586.0         C:\Windows\System32\NetSetupShim.dll 
  0x00007FFE683B0000 +991232          957952  10.0.10586.0         c:\windows\system32\ikeext.dll 
  0x00007FFE68360000 +270336          257376  10.0.10586.0         c:\windows\system32\WDSCORE.dll 
  0x00007FFE68180000 +311296          283136  10.0.10586.0         c:\windows\system32\srvsvc.dll 
  0x00007FFE66AF0000 +532480          513024  10.0.10586.0         C:\WINDOWS\system32\hnetcfg.dll 
  0x00007FFE66820000 +122880          101888  3.5.2284.0           C:\WINDOWS\system32\ATL.DLL 
  0x00007FFE66730000 +290816          275456  10.0.10586.0         C:\WINDOWS\system32\ACTIVEDS.dll 
  0x00007FFE666F0000 +262144          242688  10.0.10586.0         C:\WINDOWS\system32\adsldpc.dll 
  0x00007FFE666D0000 +69632            52736  10.0.10586.11        C:\WINDOWS\system32\TetheringClient.dll 
  0x00007FFE69150000 +61440            40448  10.0.10586.0         c:\windows\system32\NCI.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE66490000 +69632            45056  10.0.10586.0         C:\WINDOWS\system32\SSCORE.DLL 
  0x00007FFE66480000 +36864            13824  10.0.10586.71        C:\WINDOWS\SYSTEM32\sscoreext.dll 
  0x00007FFE66460000 +131072          114176  10.0.10586.0         C:\WINDOWS\system32\mi.dll 
  0x00007FFE66310000 +385024          231936  10.0.10586.0         C:\WINDOWS\system32\miutils.dll 
  0x00007FFE65E40000 +188416          165888  10.0.10586.0         C:\WINDOWS\system32\wmidcom.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\system32\DPAPI.DLL 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE65DE0000 +335872          313344  10.0.10586.0         C:\WINDOWS\system32\RESUTILS.DLL 
  0x00007FFE66620000 +667648          649216  10.0.10586.0         C:\WINDOWS\system32\CLUSAPI.dll 
  0x00007FFE75CA0000 +159744          146744  10.0.10586.0         C:\WINDOWS\system32\ncrypt.dll 
  0x00007FFE75C60000 +237568          239592  10.0.10586.0         C:\WINDOWS\system32\NTASN1.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.DLL 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\SYSTEM32\SECUR32.DLL 
  0x00007FFE66380000 +73728            52224  10.0.10586.0         C:\WINDOWS\system32\cscapi.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         c:\windows\system32\DNSAPI.dll 
  0x0000000076900000 +155648          132968  3.0.0.10             C:\Program Files\Bonjour\mdnsNSP.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE685E0000 +53248            31744  10.0.10586.0         C:\WINDOWS\System32\winrnr.dll 
  0x00007FFE685C0000 +106496           87040  10.0.10586.0         C:\WINDOWS\system32\pnrpnsp.dll 
  0x00007FFE685A0000 +90112            68096  10.0.10586.0         C:\WINDOWS\system32\napinsp.dll 
  0x00007FFE64380000 +524288          496640  10.0.10586.0         c:\windows\system32\webio.dll 
  0x00007FFE64350000 +155648          134656  10.0.10586.0         c:\windows\system32\browser.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\Windows\System32\iertutil.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\WINDOWS\SYSTEM32\mrmcorer.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\SYSTEM32\Bcp47Langs.dll 
  0x00007FFE629F0000 +36864            15872  10.0.10586.0         C:\Windows\System32\tschannel.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         C:\WINDOWS\system32\FWPolicyIOMgr.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         c:\windows\system32\srvcli.dll 
  0x00007FFE624A0000 +421888          400896  10.0.10586.0         C:\WINDOWS\system32\upnp.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         C:\WINDOWS\system32\SSDPAPI.dll 
  0x00007FFE79A40000 +454656          442720  10.0.10586.0         C:\WINDOWS\system32\coml2.dll 
  0x00007FFE5AA30000 +118784           94720  10.0.10586.0         c:\windows\system32\appinfo.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         c:\windows\system32\apphelp.dll 
  0x00007FFE5D800000 +126976          103936  10.0.10586.0         C:\WINDOWS\system32\wbem\ncprov.dll 
  0x00007FFE57890000 +1110016        1090048  10.0.10586.0         c:\windows\system32\dosvc.dll 
  0x00007FFE6AF50000 +602112          562176  10.0.10586.0         c:\windows\system32\msvcp_win.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         c:\windows\system32\VERSION.dll 
  0x00007FFE58400000 +73728            56832  7.8.10586.0          C:\Windows\System32\BitsProxy.dll 
  0x00007FFE6F7C0000 +86016            66048  10.0.10586.0         C:\WINDOWS\SYSTEM32\ondemandconnroutehelper.dll 
  0x00007FFE75680000 +499712          479232  10.0.10586.63        C:\WINDOWS\system32\schannel.DLL 
  0x00007FFE63840000 +81920            60928  10.0.10586.0         C:\WINDOWS\SYSTEM32\mskeyprotect.dll 
  0x00007FFE638F0000 +122880          110552  10.0.10586.0         C:\WINDOWS\system32\ncryptsslp.dll 
  0x00007FFE579D0000 +1167360        1144320  7.8.10586.0          c:\windows\system32\qmgr.dll 
  0x00007FFE6FD60000 +45056            26112  7.8.10586.0          c:\windows\system32\bitsperf.dll 
  0x00007FFE6FB30000 +81920            58368  7.8.10586.0          C:\WINDOWS\system32\bitsigd.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         c:\windows\system32\MPR.dll 
  0x00007FFE6A0B0000 +98304            87840  10.0.10586.0         c:\windows\system32\DMCmnUtils.dll 
  0x00007FFE6FA00000 +77824            57344  10.0.10586.0         C:\WINDOWS\SYSTEM32\devrtl.DLL 
  0x00007FFE55C90000 +921600          897024  10.0.10586.0         C:\Windows\System32\MbaeApiPublic.dll 
  0x00007FFE60F60000 +90112            80600  8.1.10586.17         C:\WINDOWS\SYSTEM32\wwapi.dll 
  0x00007FFE63860000 +163840          154976  10.0.10586.0         C:\WINDOWS\system32\dssenh.dll 
  0x00007FFE64440000 +192512          173056  10.0.10586.0         C:\WINDOWS\system32\cryptnet.dll 
  0x00007FFE5DC20000 +888832          871776  10.0.10586.0         C:\WINDOWS\system32\drvstore.dll 
  0x00007FFE639C0000 +118784           99328  10.0.10586.0         C:\WINDOWS\system32\SPINF.dll 
  0x00007FFE56980000 +696320          677376  7.0.10586.0          C:\WINDOWS\System32\StructuredQuery.dll 
  0x00007FFE6AF00000 +294912          259072  10.0.10586.0         C:\WINDOWS\System32\MSWB7.dll 
  0x00007FFE6A9B0000 +126976          103936  10.0.10586.0         C:\Windows\System32\DevDispItemProvider.dll 
  0x00007FFE6D550000 +761856          733184  10.0.10586.71        C:\WINDOWS\system32\RasApi32.dll 
  0x00007FFE6D520000 +163840          144384  10.0.10586.0         C:\WINDOWS\system32\rasman.dll 
  0x00007FFE5B890000 +962560          948224  10.0.10586.17        c:\windows\system32\xblauthmanager.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        c:\windows\system32\urlmon.dll 
  0x00007FFE74620000 +204800          183808  10.0.10586.0         C:\WINDOWS\System32\shacct.dll 
  0x00007FFE63C10000 +69632            47616  10.0.10586.0         C:\WINDOWS\system32\CredentialMigrationHandler.dll 
 
svchost.exe 
PID: 504, Threads: 31, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 29620 K (Peak: 30952 K), CommitSize: 10636 K, PageFaults: 887998 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:07, UserTime: 00:00:05 
IO - Read: 714 (34), Write: 0 (0), Other: 1531158 (21859) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k LocalService 
Handles: 951 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt: 127 	(Token) 
  Type:  7, Cnt:   5 	(Process) 
  Type:  8, Cnt:  49 	(Thread) 
  Type: 12, Cnt: 184 	(Event) 
  Type: 13, Cnt:  88 	(Mutant) 
  Type: 15, Cnt:  39 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:  44 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:  22 	(TpWorkerFactory) 
  Type: 29, Cnt:  22 	(IoCompletion) 
  Type: 30, Cnt:  87 	() 
  Type: 31, Cnt:  31 	(File) 
  Type: 36, Cnt:   8 	(Section) 
  Type: 39, Cnt:  27 	(Key) 
  Type: 40, Cnt:  72 	(ALPC Port) 
  Type: 43, Cnt: 138 	(?) 
  Type: 47, Cnt:   1 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         c:\windows\system32\XmlLite.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE73460000 +495616          472064  10.0.10586.0         C:\Windows\System32\Geolocation.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\Windows\System32\msvcp110_win.dll 
  0x00007FFE73380000 +208896          189440  10.0.10586.0         C:\Windows\System32\BiWinrt.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\Windows\System32\USERENV.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\WINDOWS\SYSTEM32\twinapi.appcore.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\Windows\System32\bcrypt.dll 
  0x00007FFE72FA0000 +303104          286720  10.0.10586.14        C:\Windows\System32\deviceaccess.dll 
  0x00007FFE72A80000 +53248            30720  10.0.10586.0         c:\windows\system32\nsisvc.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE71580000 +49152            35680  10.0.10586.0         C:\Windows\System32\LocationFrameworkPS.dll 
  0x00007FFE701B0000 +569344          547840  10.0.10586.0         c:\windows\system32\netprofmsvc.dll 
  0x00007FFE739E0000 +98304            80896  10.0.10586.0         c:\windows\system32\nlaapi.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE6FF00000 +81920            65536  10.0.10586.0         C:\WINDOWS\system32\WlanRadioManager.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\system32\IPHLPAPI.DLL 
  0x00007FFE72770000 +397312          389984  10.0.10586.0         C:\WINDOWS\system32\wlanapi.dll 
  0x00007FFE6FE40000 +102400           82432  10.0.10586.0         C:\WINDOWS\system32\BthRadioMedia.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE6FDE0000 +122880          104448  10.0.10586.0         C:\WINDOWS\SYSTEM32\bluetoothapis.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\system32\WINNSI.DLL 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE6F980000 +499712          473088  2001.12.10941.16384   c:\windows\system32\es.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        c:\windows\system32\winhttp.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE6F620000 +40960            21504  10.0.10586.0         c:\windows\system32\fdphost.dll 
  0x00007FFE6F500000 +192512          169984  10.0.10586.0         C:\Windows\System32\fdwsd.dll 
  0x00007FFE6F2E0000 +704512          676352  10.0.10586.0         C:\Windows\System32\wsdapi.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE6F170000 +1449984        1447784  10.0.10586.0         C:\Windows\System32\webservices.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE6E2C0000 +1712128        1671168  10.0.10586.0         c:\windows\system32\fntcache.dll 
  0x00007FFE6DF10000 +126976          109056  10.0.10586.0         C:\Windows\System32\fdssdp.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         C:\Windows\System32\SSDPAPI.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         c:\windows\system32\DNSAPI.dll 
  0x00007FFE6DEE0000 +167936          116224  10.0.10586.0         c:\windows\system32\FontProvider.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\system32\dhcpcsvc6.DLL 
  0x0000000076900000 +155648          132968  3.0.0.10             C:\Program Files\Bonjour\mdnsNSP.dll 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\system32\dhcpcsvc.DLL 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE6CB50000 +86016            68608  10.0.10586.0         C:\Windows\System32\fdproxy.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\Windows\System32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE66B80000 +118784          100352  10.0.10586.0         c:\windows\system32\wdi.dll 
  0x00007FFE64F50000 +98304            83968  10.0.10586.0         C:\WINDOWS\system32\perftrack.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         C:\WINDOWS\system32\FWPolicyIOMgr.dll 
  0x00007FFE64380000 +524288          496640  10.0.10586.0         c:\windows\system32\webio.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         c:\windows\system32\SspiCli.dll 
  0x00007FFE6E470000 +172032          153600  10.0.10586.0         C:\Windows\System32\FunDisc.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\system32\propsys.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE739D0000 +45056            22528  10.0.10586.0         c:\windows\system32\licensemanagersvc.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE54920000 +1298432        1281376  10.0.10586.35        c:\windows\system32\LicenseManager.dll 
  0x00007FFE554E0000 +90112            78040  10.0.10586.0         c:\windows\system32\CLIPC.dll 
  0x00007FFE730F0000 +65536            43520  10.0.10586.63        C:\WINDOWS\SYSTEM32\usermgrcli.dll 
  0x00007FFE57C00000 +729088          697344  10.0.10586.0         C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll 
  0x00007FFE594C0000 +872448          848896  10.0.10586.0         C:\Windows\System32\wuapi.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE5E9E0000 +139264          111616  10.0.10586.0         C:\Windows\System32\UpdatePolicy.dll 
  0x00007FFE6A610000 +65536            48128  10.0.10586.0         C:\Windows\System32\wups.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE5DB00000 +806912          787456  10.0.10586.0         C:\Windows\System32\Windows.Web.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\Windows\System32\iertutil.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\system32\DPAPI.DLL 
  0x00007FFE633C0000 +724992          708608  10.0.10586.0         C:\Windows\System32\Windows.Security.Authentication.Web.Core.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE5D820000 +94208            74240  10.0.10586.0         C:\WINDOWS\SYSTEM32\msauserext.dll 
  0x00007FFE57BD0000 +180224          146432  10.0.10586.0         C:\WINDOWS\SYSTEM32\AuthBroker.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wkscli.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\netutils.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\System32\fwpuclnt.dll 
  0x00007FFE75680000 +499712          479232  10.0.10586.63        C:\WINDOWS\system32\schannel.DLL 
  0x00007FFE63840000 +81920            60928  10.0.10586.0         C:\WINDOWS\SYSTEM32\mskeyprotect.dll 
  0x00007FFE75CA0000 +159744          146744  10.0.10586.0         C:\WINDOWS\SYSTEM32\ncrypt.dll 
  0x00007FFE75C60000 +237568          239592  10.0.10586.0         C:\WINDOWS\SYSTEM32\NTASN1.dll 
  0x00007FFE638F0000 +122880          110552  10.0.10586.0         C:\WINDOWS\system32\ncryptsslp.dll 
 
svchost.exe 
PID: 1032, Threads: 21, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 20316 K (Peak: 22848 K), CommitSize: 7836 K, PageFaults: 63313 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:12, UserTime: 00:00:02 
IO - Read: 577428 (111), Write: 3253002 (291), Other: 799441 (43383) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted 
Handles: 682 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   8 	(Token) 
  Type:  6, Cnt:   2 	(Job) 
  Type:  7, Cnt:   8 	(Process) 
  Type:  8, Cnt:  31 	(Thread) 
  Type: 12, Cnt: 196 	(Event) 
  Type: 13, Cnt:  10 	(Mutant) 
  Type: 15, Cnt:  15 	(Semaphore) 
  Type: 16, Cnt:   4 	(Timer) 
  Type: 17, Cnt:  10 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   5 	(TpWorkerFactory) 
  Type: 29, Cnt:   7 	(IoCompletion) 
  Type: 30, Cnt:  63 	() 
  Type: 31, Cnt:  83 	(File) 
  Type: 36, Cnt:   6 	(Section) 
  Type: 39, Cnt:  51 	(Key) 
  Type: 40, Cnt:  29 	(ALPC Port) 
  Type: 42, Cnt:   2 	(WmiGuid) 
  Type: 43, Cnt: 147 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE73940000 +57344            36864  10.0.10586.0         c:\windows\system32\hidserv.dll 
  0x00007FFE750C0000 +49152            34816  10.0.10586.0         c:\windows\system32\HID.DLL 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\winsta.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE72970000 +659456          639488  10.0.10586.0         C:\WINDOWS\SYSTEM32\PortableDeviceApi.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE72620000 +94208            73216  10.0.10586.0         C:\Windows\System32\portabledeviceconnectapi.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE725B0000 +122880          104448  10.0.10586.0         c:\windows\system32\wudfsvc.dll 
  0x00007FFE72570000 +221184          200192  10.0.10586.0         c:\windows\system32\WUDFPlatform.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         c:\windows\system32\SspiCli.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         c:\windows\system32\WTSAPI32.dll 
  0x00007FFE6F550000 +303104          275456  10.0.10586.71        c:\windows\system32\audioendpointbuilder.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE6F480000 +458752          440120  10.0.10586.0         c:\windows\system32\MMDevAPI.DLL 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          c:\windows\system32\PROPSYS.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE6B730000 +462848          444928  10.0.10586.0         c:\windows\system32\das.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE69080000 +139264          115200  10.0.10586.0         c:\windows\system32\trkwks.dll 
  0x00007FFE684B0000 +544768          528736  10.0.10586.0         c:\windows\system32\pcasvc.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         c:\windows\system32\apphelp.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         c:\windows\system32\USERENV.dll 
  0x00007FFE68070000 +1105920        1088512  10.0.10586.0         c:\windows\system32\sysmain.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE60E30000 +360448          339968  10.0.10586.0         c:\windows\system32\ncbservice.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE749A0000 +262144          239104  10.0.10586.0         c:\windows\system32\BrokerLib.dll 
  0x00007FFE72290000 +49152            26624  10.0.10586.0         C:\WINDOWS\SYSTEM32\bi.dll 
  0x00007FFE69430000 +36864            18944  10.0.10586.0         C:\WINDOWS\SYSTEM32\httpprxc.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE62F20000 +278528          254464  10.0.10586.0         C:\Windows\System32\execmodelclient.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         C:\Windows\System32\CoreMessaging.dll 
  0x00007FFE734E0000 +262144          242688  10.0.10586.0         C:\WINDOWS\System32\netprofm.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         c:\windows\system32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE6A2B0000 +45056            24576  10.0.10586.0         C:\WINDOWS\system32\SystemEventsBrokerClient.dll 
  0x00007FFE732C0000 +782336          779384  10.0.10586.0         C:\Windows\System32\taskschd.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\Windows\System32\XmlLite.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE79A40000 +454656          442720  10.0.10586.0         C:\WINDOWS\system32\coml2.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE575C0000 +647168          617984  10.0.10586.71        c:\windows\system32\storsvc.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE575A0000 +106496           97640  10.0.10586.0         c:\windows\system32\bcd.dll 
  0x00007FFE629C0000 +40960            20992  10.0.10586.0         c:\windows\system32\FLTLIB.DLL 
  0x00007FFE574F0000 +712704          698208  10.0.10586.11        c:\windows\system32\WIMGAPI.DLL 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.DLL 
  0x00007FFE63950000 +454656          436736  10.0.10586.0         C:\Windows\System32\AppXDeploymentClient.dll 
  0x00007FFE662C0000 +290816          265728  10.0.10586.0         c:\windows\system32\netman.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE57ED0000 +2818048        2800128  10.0.10586.0         C:\WINDOWS\System32\netshell.dll 
  0x00007FFE739E0000 +98304            80896  10.0.10586.0         C:\WINDOWS\System32\nlaapi.dll 
  0x00007FFE57AF0000 +909312          884736  10.0.10586.71        c:\windows\system32\RASDLG.dll 
  0x00007FFE57CE0000 +552960          534016  10.0.10586.0         c:\windows\system32\MPRAPI.dll 
  0x00007FFE6D550000 +761856          733184  10.0.10586.71        c:\windows\system32\RASAPI32.dll 
  0x00007FFE6A760000 +81920            62464  10.0.10586.0         c:\windows\system32\rtutils.dll 
  0x00007FFE6D520000 +163840          144384  10.0.10586.0         c:\windows\system32\rasman.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         c:\windows\system32\DPAPI.dll 
  0x00007FFE73880000 +40960            26408  10.0.10586.0         c:\windows\system32\DSROLE.dll 
  0x00007FFE72A90000 +69632            45056  10.0.10586.0         c:\windows\system32\WMICLNT.dll 
  0x00007FFE66B80000 +118784          100352  10.0.10586.0         c:\windows\system32\wdi.dll 
  0x00007FFE61FD0000 +122880          100352  10.0.10586.0         C:\WINDOWS\system32\radardt.dll 
  0x00007FFE73960000 +65536            45568  10.0.10586.0         C:\WINDOWS\system32\pcadm.dll 
  0x00007FFE6A640000 +65536            50176  10.0.10586.0         C:\WINDOWS\system32\pcacli.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         C:\WINDOWS\system32\MPR.dll 
 
svchost.exe 
PID: 1044, Threads: 30, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 28728 K (Peak: 33216 K), CommitSize: 17164 K, PageFaults: 36297 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:03, UserTime: 00:00:04 
IO - Read: 13549449 (525), Write: 21121383 (957), Other: 824906 (18449) 
CmdLine: C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted 
Handles: 968 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   3 	(Token) 
  Type:  7, Cnt:   8 	(Process) 
  Type:  8, Cnt:  55 	(Thread) 
  Type: 12, Cnt: 291 	(Event) 
  Type: 13, Cnt:   5 	(Mutant) 
  Type: 15, Cnt:  18 	(Semaphore) 
  Type: 16, Cnt:   6 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   4 	(IoCompletion) 
  Type: 30, Cnt:  79 	() 
  Type: 31, Cnt: 161 	(File) 
  Type: 36, Cnt:   5 	(Section) 
  Type: 39, Cnt:  42 	(Key) 
  Type: 40, Cnt:  80 	(ALPC Port) 
  Type: 42, Cnt:   3 	(WmiGuid) 
  Type: 43, Cnt: 191 	(?) 
  Type: 44, Cnt:   3 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\System32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE73970000 +45056            24576  10.0.10586.0         c:\windows\system32\lmhsvc.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE738D0000 +36864            17408  10.0.10586.0         c:\windows\system32\nrpsrv.DLL 
  0x00007FFE73100000 +1773568        1743872  10.0.10586.0         c:\windows\system32\wevtsvc.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\System32\sspicli.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE72640000 +380928          355840  10.0.10586.0         c:\windows\system32\dhcpcore.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         c:\windows\system32\DNSAPI.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\firewallapi.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE725D0000 +294912          267264  10.0.10586.0         C:\WINDOWS\System32\dhcpcore6.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\System32\CRYPTBASE.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         c:\windows\system32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         c:\windows\system32\dhcpcsvc.DLL 
  0x00007FFE6D110000 +487424          464384  10.0.10586.0         c:\windows\system32\provsvc.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE6E470000 +172032          153600  10.0.10586.0         C:\Windows\System32\FunDisc.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\Windows\System32\XmlLite.dll 
  0x00007FFE6CB50000 +86016            68608  10.0.10586.0         C:\Windows\System32\fdproxy.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE6B9D0000 +237568          216064  10.0.10586.0         c:\windows\system32\P2P.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE6A8A0000 +1089536        1053696  10.0.10586.71        c:\windows\system32\audiosrv.dll 
  0x00007FFE6F480000 +458752          440120  10.0.10586.0         c:\windows\system32\MMDevAPI.DLL 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         c:\windows\system32\DEVOBJ.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          c:\windows\system32\PROPSYS.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\winsta.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE6A6C0000 +630784          607232  10.0.10586.35        c:\windows\system32\wcmsvc.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE6A650000 +229376          210432  10.0.10586.35        C:\WINDOWS\System32\wcmcsp.dll 
  0x00007FFE72A90000 +69632            45056  10.0.10586.0         C:\WINDOWS\System32\WMICLNT.dll 
  0x00007FFE6B170000 +57344            37376  10.0.10586.0         C:\WINDOWS\SYSTEM32\cmintegrator.dll 
  0x00007FFE739E0000 +98304            80896  10.0.10586.0         C:\WINDOWS\SYSTEM32\nlaapi.dll 
  0x00007FFE72FA0000 +303104          286720  10.0.10586.14        C:\Windows\System32\deviceaccess.dll 
  0x00007FFE6A2F0000 +557056          536256  10.0.10586.71        C:\WINDOWS\System32\audioses.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE685C0000 +106496           87040  10.0.10586.0         C:\WINDOWS\system32\pnrpnsp.dll 
  0x00007FFE74620000 +204800          183808  10.0.10586.0         C:\WINDOWS\System32\shacct.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\System32\SAMLIB.dll 
  0x00007FFE6A690000 +163840          143872  10.0.10586.0         C:\WINDOWS\System32\IDStore.dll 
  0x00007FFE6DBF0000 +69632            45056  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemprox.dll 
  0x00007FFE6DB70000 +520192          471040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wbemcomn.dll 
  0x00007FFE6D240000 +81920            62976  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemsvc.dll 
  0x00007FFE6D260000 +1007616         987648  10.0.10586.0         C:\WINDOWS\system32\wbem\fastprox.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\system32\wkscli.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\system32\netutils.dll 
  0x00007FFE699E0000 +389120          368128  10.0.10586.0         c:\windows\system32\dsreg.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        c:\windows\system32\WINHTTP.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\cryptsp.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         c:\windows\system32\DPAPI.DLL 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE6A9B0000 +126976          103936  10.0.10586.0         C:\Windows\System32\DevDispItemProvider.dll 
  0x00007FFE5FFC0000 +15073280      15053824  10.0.10586.0         C:\Windows\System32\DDORes.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\System32\USERENV.dll 
  0x00007FFE574B0000 +212992          190464  10.0.10586.71        c:\windows\system32\wscsvc.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE70020000 +1622016        1500672  10.0.10586.0         c:\windows\system32\dbghelp.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\Windows\System32\twinapi.appcore.dll 
  0x00000000765D0000 +3338240        2808024  11.0.6000.383        C:\WINDOWS\system32\RltkAPO64.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE697C0000 +536576          516544  10.0.10586.11        C:\WINDOWS\system32\audioeng.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\system32\WINMM.dll 
  0x00007FFE72510000 +45056            32592  10.0.10586.0         C:\WINDOWS\system32\AVRT.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\system32\WINMMBASE.dll 
  0x00007FFE69440000 +1802240        1804664  10.0.10586.63        C:\WINDOWS\System32\WMALFXGFXDSP.dll 
  0x00007FFE69850000 +1101824        1092456  12.0.10586.35        C:\WINDOWS\SYSTEM32\mfplat.DLL 
  0x00007FFE69B80000 +176128          152376  12.0.10586.0         C:\WINDOWS\SYSTEM32\RTWorkQ.DLL 
  0x0000000076900000 +155648          132968  3.0.0.10             C:\Program Files\Bonjour\mdnsNSP.dll 
  0x00007FFE685E0000 +53248            31744  10.0.10586.0         C:\WINDOWS\System32\winrnr.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE685A0000 +90112            68096  10.0.10586.0         C:\WINDOWS\system32\napinsp.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\System32\fwpuclnt.dll 
 
svchost.exe 
PID: 1060, Threads: 23, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 15596 K (Peak: 16540 K), CommitSize: 5320 K, PageFaults: 12265 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 183748 (31), Write: 68608 (1), Other: 1315856 (16076) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation 
Handles: 469 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  8, Cnt:  24 	(Thread) 
  Type: 12, Cnt: 122 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt:  21 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:  33 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:  16 	(TpWorkerFactory) 
  Type: 29, Cnt:  16 	(IoCompletion) 
  Type: 30, Cnt:  61 	() 
  Type: 31, Cnt:  37 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  21 	(Key) 
  Type: 40, Cnt:  21 	(ALPC Port) 
  Type: 43, Cnt:  85 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE738E0000 +180224          164864  10.0.10586.0         c:\windows\system32\timebrokerserver.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE749A0000 +262144          239104  10.0.10586.0         c:\windows\system32\BrokerLib.dll 
  0x00007FFE72290000 +49152            26624  10.0.10586.0         C:\WINDOWS\SYSTEM32\bi.dll 
  0x00007FFE6F4F0000 +57344            35840  10.0.10586.0         c:\windows\system32\fdrespub.dll 
  0x00007FFE6F2E0000 +704512          676352  10.0.10586.0         c:\windows\system32\wsdapi.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE6F170000 +1449984        1447784  10.0.10586.0         c:\windows\system32\webservices.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE6E470000 +172032          153600  10.0.10586.0         C:\Windows\System32\FunDisc.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         c:\windows\system32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         c:\windows\system32\dhcpcsvc.DLL 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE6DED0000 +40960            20480  10.0.10586.0         C:\WINDOWS\system32\wshqos.dll 
  0x00007FFE6DEC0000 +32768            12800  10.0.10586.0         C:\WINDOWS\system32\wshtcpip.DLL 
  0x00007FFE6DEA0000 +32768            12800  10.0.10586.0         C:\WINDOWS\system32\wship6.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        c:\windows\system32\WINHTTP.dll 
  0x00007FFE6D190000 +53248            30720  10.0.10586.0         c:\windows\system32\HTTPAPI.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         c:\windows\system32\wkscli.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\Windows\System32\XmlLite.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         c:\windows\system32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE665D0000 +266240          239616  10.0.10586.0         c:\windows\system32\ssdpsrv.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         C:\WINDOWS\system32\FWPolicyIOMgr.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\sspicli.dll 
  0x00007FFE62F20000 +278528          254464  10.0.10586.0         C:\Windows\System32\execmodelclient.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         C:\Windows\System32\CoreMessaging.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\Windows\System32\twinapi.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE56900000 +475136          452608  10.0.10586.0         c:\windows\system32\upnphost.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         c:\windows\system32\SSDPAPI.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE6B690000 +638976          619520  10.0.10586.0         C:\WINDOWS\SYSTEM32\efswrt.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\SYSTEM32\edputil.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\WINDOWS\SYSTEM32\urlmon.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\wininet.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE72C30000 +90112            68608  10.0.10586.0         C:\WINDOWS\system32\udhisapi.dll 
WARNING: PID: 1272 - Failed to open process. 
Handles: 868 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:  73 	(Thread) 
  Type: 12, Cnt: 316 	(Event) 
  Type: 13, Cnt:  16 	(Mutant) 
  Type: 15, Cnt:  84 	(Semaphore) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   5 	(IoCompletion) 
  Type: 30, Cnt:  51 	() 
  Type: 31, Cnt:  46 	(File) 
  Type: 36, Cnt:   6 	(Section) 
  Type: 39, Cnt:  79 	(Key) 
  Type: 40, Cnt:  22 	(ALPC Port) 
  Type: 43, Cnt: 152 	(?) 
WARNING: Failed to create module snapshot. (5) 
 
svchost.exe 
PID: 1284, Threads: 28, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 28976 K (Peak: 97276 K), CommitSize: 16660 K, PageFaults: 997692 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:09, UserTime: 00:00:16 
IO - Read: 74050220 (687), Write: 2541108 (383), Other: 5413966 (15691) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork 
Handles: 615 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  15 	(Token) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:  69 	(Thread) 
  Type: 12, Cnt: 202 	(Event) 
  Type: 13, Cnt:   4 	(Mutant) 
  Type: 15, Cnt:  23 	(Semaphore) 
  Type: 16, Cnt:   4 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  37 	() 
  Type: 31, Cnt:  18 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  23 	(Key) 
  Type: 40, Cnt:  62 	(ALPC Port) 
  Type: 43, Cnt: 130 	(?) 
  Type: 44, Cnt:   2 	(?) 
  Type: 47, Cnt:   5 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         c:\windows\system32\coremessaging.dll 
  0x00007FFE6F530000 +98304            81408  10.0.10586.0         c:\windows\system32\ncdautosetup.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\CFGMGR32.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE6F390000 +69632            47616  10.0.10586.0         c:\windows\system32\deviceassociation.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE734E0000 +262144          242688  10.0.10586.0         C:\WINDOWS\System32\netprofm.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         c:\windows\system32\dhcpcsvc.DLL 
  0x00007FFE6DE90000 +57344            37888  10.0.10586.0         C:\WINDOWS\system32\dtsh.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE6DBF0000 +69632            45056  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemprox.dll 
  0x00007FFE6DB70000 +520192          471040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wbemcomn.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE6D240000 +81920            62976  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemsvc.dll 
  0x00007FFE6D260000 +1007616         987648  10.0.10586.0         C:\WINDOWS\system32\wbem\fastprox.dll 
  0x00007FFE69F90000 +831488          794112  10.0.10586.0         c:\windows\system32\bfe.dll 
  0x00007FFE75370000 +299008          277504  10.0.10586.0         c:\windows\system32\AUTHZ.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         c:\windows\system32\SspiCli.dll 
  0x00007FFE72C80000 +409600          400336  10.0.10586.0         C:\WINDOWS\SYSTEM32\wevtapi.dll 
  0x00007FFE696B0000 +905216          870912  10.0.10586.0         c:\windows\system32\mpssvc.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         c:\windows\system32\DNSAPI.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         c:\windows\system32\fwpuclnt.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         c:\windows\system32\FWPolicyIOMgr.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         c:\windows\system32\wkscli.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         c:\windows\system32\netutils.dll 
  0x00007FFE69430000 +36864            18944  10.0.10586.0         C:\WINDOWS\SYSTEM32\httpprxc.dll 
  0x00007FFE6FF40000 +348160          334736  10.0.10586.11        C:\WINDOWS\SYSTEM32\policymanager.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         c:\windows\system32\msvcp110_win.dll 
  0x00007FFE69420000 +40960            23552  10.0.10586.0         C:\WINDOWS\system32\adhapi.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         c:\windows\system32\dhcpcsvc6.DLL 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE6DED0000 +40960            20480  10.0.10586.0         C:\WINDOWS\system32\wshqos.dll 
  0x00007FFE6DEC0000 +32768            12800  10.0.10586.0         C:\WINDOWS\system32\wshtcpip.DLL 
  0x00007FFE6DEA0000 +32768            12800  10.0.10586.0         C:\WINDOWS\system32\wship6.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE69410000 +49152            25600  10.0.10586.0         C:\WINDOWS\system32\wfapigp.dll 
  0x00007FFE69390000 +196608          170496  10.0.10586.0         c:\windows\system32\dps.dll 
  0x00007FFE732C0000 +782336          779384  10.0.10586.0         C:\Windows\System32\taskschd.dll 
  0x00007FFE66B80000 +118784          100352  10.0.10586.0         c:\windows\system32\wdi.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\WINDOWS\SYSTEM32\mrmcorer.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\SYSTEM32\Bcp47Langs.dll 
  0x00007FFE6CAA0000 +692224          674816  10.0.10586.11        C:\Windows\System32\Windows.UI.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\system32\ntmarta.dll 
  0x00007FFE64400000 +225280          206848  10.0.10586.0         C:\WINDOWS\System32\srumsvc.dll 
  0x00007FFE6AA10000 +3117056        3079168  10.0.10586.0         C:\WINDOWS\system32\ESENT.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.DLL 
  0x00007FFE68580000 +81920            67584  10.0.10586.0         C:\WINDOWS\System32\nduprov.dll 
  0x00007FFE68540000 +110592           92160  10.0.10586.0         C:\WINDOWS\System32\eeprov.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE64520000 +102400           80896  10.0.10586.0         C:\WINDOWS\SYSTEM32\appsruprov.dll 
  0x00007FFE6AF50000 +602112          562176  10.0.10586.0         C:\WINDOWS\system32\msvcp_win.dll 
  0x00007FFE66370000 +57344            35328  10.0.10586.0         C:\WINDOWS\System32\wpnsruprov.dll 
  0x00007FFE64340000 +49152            27648  10.0.10586.0         C:\WINDOWS\System32\ncuprov.dll 
  0x00007FFE64320000 +86016            65024  10.0.10586.0         C:\WINDOWS\System32\energyprov.dll 
  0x00007FFE65160000 +77824            60928  10.0.10586.0         C:\WINDOWS\System32\srumapi.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE61FD0000 +122880          100352  10.0.10586.0         C:\WINDOWS\system32\radardt.dll 
  0x00007FFE69C10000 +45056            24064  10.0.10586.0         c:\windows\system32\ktmw32.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE6B690000 +638976          619520  10.0.10586.0         C:\WINDOWS\SYSTEM32\efswrt.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\SYSTEM32\edputil.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\system32\WTSAPI32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\system32\WINSTA.dll 
 
svchost.exe 
PID: 1444, Threads: 18, Owner: NT AUTHORITY\NETWORK SERVICE 
MEM - WrkSet: 16072 K (Peak: 18600 K), CommitSize: 7424 K, PageFaults: 34274 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:02, UserTime: 00:00:02 
IO - Read: 4824611 (1846), Write: 49367 (193), Other: 3170447 (67654) 
CmdLine: C:\WINDOWS\System32\svchost.exe -k NetworkService 
Handles: 532 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  7, Cnt:   2 	(Process) 
  Type:  8, Cnt:  42 	(Thread) 
  Type: 12, Cnt: 246 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:  13 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   5 	(IoCompletion) 
  Type: 30, Cnt:  57 	() 
  Type: 31, Cnt:  34 	(File) 
  Type: 36, Cnt:   5 	(Section) 
  Type: 39, Cnt:  18 	(Key) 
  Type: 40, Cnt:  20 	(ALPC Port) 
  Type: 42, Cnt:   2 	(WmiGuid) 
  Type: 43, Cnt:  71 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\System32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE71F30000 +393216          371712  10.0.10586.0         c:\windows\system32\nlasvc.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         c:\windows\system32\dhcpcsvc.DLL 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE71E30000 +430080          397824  10.0.10586.0         c:\windows\system32\ncsi.dll 
  0x00007FFE71DB0000 +303104          284672  10.0.10586.0         c:\windows\system32\dnsrslvr.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         c:\windows\system32\DNSAPI.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\System32\sspicli.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\SYSTEM32\Fwpuclnt.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         C:\WINDOWS\System32\ssdpapi.dll 
  0x00007FFE71B70000 +40960            14848  10.0.10586.0         C:\WINDOWS\System32\dnsext.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\System32\USERENV.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE72A90000 +69632            45056  10.0.10586.0         c:\windows\system32\WMICLNT.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         c:\windows\system32\dhcpcsvc6.DLL 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         c:\windows\system32\wkscli.dll 
  0x00007FFE715E0000 +188416          169984  10.0.10586.0         C:\WINDOWS\SYSTEM32\netjoin.dll 
  0x00007FFE72770000 +397312          389984  10.0.10586.0         C:\WINDOWS\system32\WlanApi.dll 
  0x00007FFE75C10000 +135168          109568  10.0.10586.0         C:\WINDOWS\SYSTEM32\JoinUtil.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\netutils.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         c:\windows\system32\CRYPTBASE.dll 
  0x00007FFE72C80000 +409600          400336  10.0.10586.0         C:\WINDOWS\SYSTEM32\wevtapi.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        c:\windows\system32\WINHTTP.dll 
  0x00007FFE6A060000 +294912          274432  10.0.10586.0         c:\windows\system32\wkssvc.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE732C0000 +782336          779384  10.0.10586.0         C:\Windows\System32\taskschd.dll 
  0x00007FFE69350000 +98304            78848  10.0.10586.0         c:\windows\system32\cryptsvc.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE693F0000 +77824            57856  10.0.10586.0         C:\Windows\System32\crypttpmeksvc.dll 
  0x00007FFE693C0000 +143360          122368  10.0.10586.0         C:\Windows\System32\cryptcatsvc.dll 
  0x00007FFE6D630000 +1581056        1558528  10.0.10586.0         C:\WINDOWS\System32\VSSAPI.DLL 
  0x00007FFE6D610000 +98304            70144  10.0.10586.0         C:\WINDOWS\System32\VssTrace.DLL 
  0x00007FFE6DB00000 +102400           79360  10.0.10586.0         C:\WINDOWS\System32\samcli.dll 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\System32\SAMLIB.dll 
  0x00007FFE6F980000 +499712          473088  2001.12.10941.16384   C:\WINDOWS\System32\ES.DLL 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\System32\PROPSYS.dll 
  0x00007FFE64380000 +524288          496640  10.0.10586.0         c:\windows\system32\webio.dll 
  0x00007FFE6AA10000 +3117056        3079168  10.0.10586.0         C:\WINDOWS\System32\ESENT.dll 
 
WUDFHost.exe 
PID: 1476, Threads: 6, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 7136 K (Peak: 7428 K), CommitSize: 1672 K, PageFaults: 2496 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 32058 (1385) 
CmdLine: "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-891d950a-f826-41c5-a12b-fb1b4888146b -SystemEventPortName:HostProcess-90a7bf5d-368e-4943-9be4-022565e5ad31 -IoCancelEventPortName:HostProcess-990426e2-b5ba-45e3-aad7-9a8279742af2 -NonStateChangingEventPortName:HostProcess-f303e212-e926-4af2-8491-8f7b93116509 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ffe63b9e-371c-475d-afc8-7016ee2ef3b4 -DeviceGroupId:WpdFsGroup 
Handles: 334 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   1 	(Thread) 
  Type: 12, Cnt: 148 	(Event) 
  Type: 13, Cnt:   5 	(Mutant) 
  Type: 15, Cnt:   6 	(Semaphore) 
  Type: 16, Cnt:   4 	(Timer) 
  Type: 17, Cnt:  12 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   6 	(TpWorkerFactory) 
  Type: 29, Cnt:   6 	(IoCompletion) 
  Type: 30, Cnt:  38 	() 
  Type: 31, Cnt:  31 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  17 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:  51 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6CEEB0000 +282624          265728  10.0.10586.0         C:\Windows\System32\WUDFHost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE72570000 +221184          200192  10.0.10586.0         C:\Windows\System32\WUDFPlatform.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\Windows\System32\DEVOBJ.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\Windows\System32\SspiCli.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE71B20000 +307200          291328  10.0.10586.0         C:\Windows\System32\drivers\UMDF\WpdFs.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE71890000 +2650112        2641928  12.0.10586.0         C:\WINDOWS\SYSTEM32\wmvcore.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE717A0000 +307200          299600  12.0.10586.0         C:\WINDOWS\SYSTEM32\WMASF.DLL 
  0x00007FFE71670000 +1236992        1239096  12.0.10586.0         C:\WINDOWS\SYSTEM32\mfperfhelper.dll 
  0x00007FFE70790000 +630784          607232  10.0.10586.0         C:\Windows\System32\WUDFx.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE6FFA0000 +151552          130048  10.0.10586.0         C:\Windows\System32\portabledeviceclassextension.dll 
  0x00007FFE6FEC0000 +208896          191488  10.0.10586.0         C:\Windows\System32\PortableDeviceTypes.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\Windows\System32\PROPSYS.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
 
atiesrxx.exe 
PID: 1556, Threads: 4, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 4644 K (Peak: 5148 K), CommitSize: 1056 K, PageFaults: 1456 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 324 (89) 
CmdLine: C:\WINDOWS\system32\atiesrxx.exe 
Handles: 112 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:  40 	(Event) 
  Type: 13, Cnt:   6 	(Mutant) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   4 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:   5 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  26 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7C4750000 +274432          254992  6.14.11.1209         C:\WINDOWS\system32\atiesrxx.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77FF0000 +32768            18656  10.0.10586.0         C:\WINDOWS\system32\PSAPI.DLL 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\POWRPROF.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\CFGMGR32.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\system32\WTSAPI32.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\system32\USERENV.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\system32\dwmapi.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\system32\WINSTA.dll 
 
atieclxx.exe 
PID: 1732, Threads: 6, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 8628 K (Peak: 8944 K), CommitSize: 1976 K, PageFaults: 5509 
TIME - Start 29.01.2016 12:19:24, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 688800 (2), Write: 0 (0), Other: 4822 (1985) 
CmdLine: atieclxx 
Handles: 195 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  6, Cnt:   1 	(Job) 
  Type:  7, Cnt:   3 	(Process) 
  Type:  8, Cnt:  10 	(Thread) 
  Type: 12, Cnt:  42 	(Event) 
  Type: 13, Cnt:  11 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:   8 	(File) 
  Type: 36, Cnt:   5 	(Section) 
  Type: 39, Cnt:  20 	(Key) 
  Type: 40, Cnt:   6 	(ALPC Port) 
  Type: 43, Cnt:  65 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF706A60000 +577536          561176  6.14.11.1209         C:\WINDOWS\system32\atieclxx.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\POWRPROF.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\CFGMGR32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE777F0000 +393216          375296  2.1.0.0              C:\WINDOWS\system32\DIFXAPI.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE77FF0000 +32768            18656  10.0.10586.0         C:\WINDOWS\system32\PSAPI.DLL 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\system32\USERENV.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\system32\WTSAPI32.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\system32\PROPSYS.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\system32\dwmapi.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\system32\WINSTA.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE6F480000 +458752          440120  10.0.10586.0         C:\WINDOWS\System32\MMDevApi.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
 
svchost.exe 
PID: 2044, Threads: 10, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 13764 K (Peak: 15340 K), CommitSize: 4548 K, PageFaults: 22609 
TIME - Start 29.01.2016 12:19:25, KernelTime: 00:00:02, UserTime: 00:00:01 
IO - Read: 2787372 (65), Write: 1409029 (100), Other: 2819458 (39242) 
CmdLine: C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet 
Handles: 442 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  12 	(Token) 
  Type:  8, Cnt:  26 	(Thread) 
  Type: 12, Cnt: 115 	(Event) 
  Type: 13, Cnt:   3 	(Mutant) 
  Type: 15, Cnt:  38 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   4 	(IoCompletion) 
  Type: 30, Cnt:  33 	() 
  Type: 31, Cnt:  19 	(File) 
  Type: 36, Cnt:   5 	(Section) 
  Type: 39, Cnt:  10 	(Key) 
  Type: 40, Cnt:  12 	(ALPC Port) 
  Type: 43, Cnt: 150 	(?) 
  Type: 47, Cnt:   1 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\System32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE6B7B0000 +368640          351232  10.0.10586.0         c:\windows\system32\pnrpsvc.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\System32\sspicli.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\POWRPROF.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         c:\windows\system32\WINNSI.DLL 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         c:\windows\system32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         c:\windows\system32\dhcpcsvc.DLL 
  0x00007FFE6CA50000 +266240          258280  10.0.10586.0         c:\windows\system32\sqmapi.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         C:\WINDOWS\System32\SSDPAPI.DLL 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE6B690000 +638976          619520  10.0.10586.0         C:\WINDOWS\SYSTEM32\efswrt.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\SHCORE.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\SYSTEM32\edputil.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         c:\windows\system32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\System32\bcrypt.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\System32\CRYPTBASE.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\system32\DPAPI.dll 
  0x00007FFE75CA0000 +159744          146744  10.0.10586.0         C:\WINDOWS\system32\ncrypt.dll 
  0x00007FFE75C60000 +237568          239592  10.0.10586.0         C:\WINDOWS\system32\NTASN1.dll 
  0x00007FFE6AE70000 +454656          434176  10.0.10586.0         c:\windows\system32\p2psvc.dll 
  0x00007FFE6ADB0000 +454656          430080  10.0.10586.0         c:\windows\system32\P2PGRAPH.dll 
  0x00007FFE6AA10000 +3117056        3079168  10.0.10586.0         c:\windows\system32\ESENT.dll 
  0x00007FFE75370000 +299008          277504  10.0.10586.0         c:\windows\system32\AUTHZ.dll 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\system32\secur32.dll 
  0x00007FFE685C0000 +106496           87040  10.0.10586.0         C:\WINDOWS\system32\pnrpnsp.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE75680000 +499712          479232  10.0.10586.63        C:\WINDOWS\system32\schannel.DLL 
  0x00007FFE63840000 +81920            60928  10.0.10586.0         C:\WINDOWS\SYSTEM32\mskeyprotect.dll 
  0x00007FFE65190000 +77824            53760  10.0.10586.0         c:\windows\system32\drttransport.dll 
  0x00007FFE639E0000 +294912          278016  10.0.10586.0         c:\windows\system32\drt.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
 
spoolsv.exe 
PID: 2116, Threads: 9, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 11276 K (Peak: 14356 K), CommitSize: 5196 K, PageFaults: 4068 
TIME - Start 29.01.2016 12:19:25, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 232 (2), Write: 320 (2), Other: 42470 (1730) 
CmdLine: C:\WINDOWS\System32\spoolsv.exe 
   ## Type: 41 -> DuplicateHandle error: 0x5 
Handles: 388 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   3 	(Token) 
  Type:  8, Cnt:   9 	(Thread) 
  Type: 12, Cnt: 114 	(Event) 
  Type: 13, Cnt:   9 	(Mutant) 
  Type: 15, Cnt:  13 	(Semaphore) 
  Type: 17, Cnt:  18 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   9 	(TpWorkerFactory) 
  Type: 29, Cnt:   9 	(IoCompletion) 
  Type: 30, Cnt:  36 	() 
  Type: 31, Cnt:  41 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  17 	(Key) 
  Type: 40, Cnt:   6 	(ALPC Port) 
  Type: 41, Cnt:   1 	() 
  Type: 43, Cnt:  95 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6ADE30000 +778240          755712  10.0.10586.0         C:\WINDOWS\System32\spoolsv.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\System32\DNSAPI.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\System32\bcrypt.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\System32\SspiCli.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\System32\WTSAPI32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\System32\WINSTA.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\System32\IPHLPAPI.DLL 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\System32\WINNSI.DLL 
  0x0000000076900000 +155648          132968  3.0.0.10             C:\Program Files\Bonjour\mdnsNSP.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\System32\fwpuclnt.dll 
  0x00007FFE6B050000 +1142784        1118208  10.0.10586.0         C:\WINDOWS\System32\localspl.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         C:\WINDOWS\System32\srvcli.dll 
  0x00007FFE663A0000 +69632            49152  10.0.10586.0         C:\WINDOWS\System32\sfc_os.dll 
  0x00007FFE72F30000 +114688           93184  10.0.10586.0         C:\WINDOWS\System32\SPOOLSS.DLL 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\System32\Secur32.dll 
  0x00007FFE6AD20000 +540672          517632  10.0.10586.11        C:\WINDOWS\system32\winspool.drv 
  0x00007FFE72F10000 +81920            62464  10.0.10586.0         C:\WINDOWS\System32\PrintIsolationProxy.dll 
  0x00007FFE72EF0000 +69632            48640  10.0.10586.0         C:\WINDOWS\System32\FXSMON.DLL 
  0x00007FFE6CD30000 +237568          216576  10.0.10586.0         C:\WINDOWS\System32\tcpmon.dll 
  0x00007FFE72EE0000 +49152            32768  10.0.10586.0         C:\WINDOWS\System32\snmpapi.dll 
  0x00007FFE6CD10000 +81920            63488  10.0.10586.0         C:\WINDOWS\System32\wsnmp32.dll 
  0x00007FFE6B000000 +327680          306688  10.0.10586.0         C:\WINDOWS\System32\usbmon.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE6A800000 +606208          587776  10.0.10586.0         C:\WINDOWS\System32\WSDMon.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE6F2E0000 +704512          676352  10.0.10586.0         C:\WINDOWS\System32\wsdapi.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE6F390000 +69632            47616  10.0.10586.0         C:\WINDOWS\System32\deviceassociation.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\System32\netutils.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        C:\WINDOWS\System32\WINHTTP.dll 
  0x00007FFE6F170000 +1449984        1447784  10.0.10586.0         C:\WINDOWS\System32\webservices.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\System32\fwbase.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE6E470000 +172032          153600  10.0.10586.0         C:\Windows\System32\FunDisc.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\Windows\System32\XmlLite.dll 
  0x00007FFE6CCF0000 +77824            61440  10.0.10586.0         C:\Windows\System32\fdPnp.dll 
  0x00007FFE66820000 +122880          101888  3.5.2284.0           C:\Windows\System32\ATL.DLL 
  0x00007FFE5DC20000 +888832          871776  10.0.10586.0         C:\WINDOWS\system32\drvstore.dll 
  0x00007FFE6B1B0000 +65536            44032  10.0.10586.0         C:\WINDOWS\system32\spool\PRTPROCS\x64\winprint.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\System32\USERENV.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE73880000 +40960            26408  10.0.10586.0         C:\WINDOWS\System32\DSROLE.dll 
  0x00007FFE5AAB0000 +860160          841216  10.0.10586.0         C:\WINDOWS\System32\win32spl.dll 
  0x00007FFE6B180000 +192512          167936  10.0.10586.0         C:\WINDOWS\System32\inetpp.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\System32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\System32\CRYPTBASE.dll 
  0x00007FFE66380000 +73728            52224  10.0.10586.0         C:\WINDOWS\System32\cscapi.dll 
WARNING: PID: 2224 - Failed to open process. 
Handles: 642 
  Type:  3, Cnt:   1 	(Directory) 
  Type:  7, Cnt:   4 	(Process) 
  Type:  8, Cnt:  16 	(Thread) 
  Type: 12, Cnt: 470 	(Event) 
  Type: 13, Cnt:   4 	(Mutant) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   8 	() 
  Type: 31, Cnt:  14 	(File) 
  Type: 36, Cnt:   6 	(Section) 
  Type: 39, Cnt:  20 	(Key) 
  Type: 40, Cnt:  10 	(ALPC Port) 
  Type: 43, Cnt:  72 	(?) 
WARNING: Failed to create module snapshot. (5) 
 
dasHost.exe 
PID: 2268, Threads: 16, Owner: NT AUTHORITY\LOCAL SERVICE 
MEM - WrkSet: 16020 K (Peak: 17200 K), CommitSize: 5928 K, PageFaults: 6200 
TIME - Start 29.01.2016 12:19:25, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 66745 (15), Other: 653348 (5137) 
CmdLine: dashost.exe {e3ea4203-6e88-4bed-a93d6bd999b60f5b} 
Handles: 413 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:  22 	(Thread) 
  Type: 12, Cnt:  87 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt:  10 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:  46 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:  23 	(TpWorkerFactory) 
  Type: 29, Cnt:  23 	(IoCompletion) 
  Type: 30, Cnt:  62 	() 
  Type: 31, Cnt:  18 	(File) 
  Type: 36, Cnt:   4 	(Section) 
  Type: 39, Cnt:  26 	(Key) 
  Type: 40, Cnt:   9 	(ALPC Port) 
  Type: 43, Cnt:  75 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF69D7B0000 +110592           95232  10.0.10586.0         C:\WINDOWS\system32\dashost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE69180000 +192512          172544  10.0.10586.0         C:\WINDOWS\system32\dafupnp.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\system32\IPHLPAPI.DLL 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\system32\bcrypt.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        C:\WINDOWS\system32\WINHTTP.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         C:\WINDOWS\system32\SSDPAPI.dll 
  0x00007FFE6F390000 +69632            47616  10.0.10586.0         C:\WINDOWS\system32\deviceassociation.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE63C50000 +249856          230400  10.0.10586.0         C:\WINDOWS\system32\DAFWSD.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE6F2E0000 +704512          676352  10.0.10586.0         C:\WINDOWS\system32\wsdapi.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE6F170000 +1449984        1447784  10.0.10586.0         C:\WINDOWS\system32\webservices.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\system32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\system32\dhcpcsvc.DLL 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE6DED0000 +40960            20480  10.0.10586.0         C:\WINDOWS\system32\wshqos.dll 
  0x00007FFE6DEC0000 +32768            12800  10.0.10586.0         C:\WINDOWS\system32\wshtcpip.DLL 
  0x00007FFE6DEA0000 +32768            12800  10.0.10586.0         C:\WINDOWS\system32\wship6.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\system32\WINNSI.DLL 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE64380000 +524288          496640  10.0.10586.0         C:\WINDOWS\system32\webio.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\system32\DNSAPI.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         C:\WINDOWS\system32\FWPolicyIOMgr.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\system32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE734E0000 +262144          242688  10.0.10586.0         C:\WINDOWS\System32\netprofm.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\WINDOWS\system32\XmlLite.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE567D0000 +1060864        1036288  12.0.10586.0         C:\Windows\System32\Windows.Media.Streaming.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE624A0000 +421888          400896  10.0.10586.0         C:\WINDOWS\system32\upnp.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\WINDOWS\SYSTEM32\urlmon.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\wininet.dll 
 
armsvc.exe [32bit] 
PID: 2500, Threads: 2, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 5256 K (Peak: 5916 K), CommitSize: 1160 K, PageFaults: 1627 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 518 (62) 
CmdLine: "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" 
Handles: 111 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   2 	(Thread) 
  Type: 12, Cnt:  22 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   5 	(File) 
  Type: 39, Cnt:   4 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  44 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00000000013B0000 +86016            81088  1.802.11.4130        C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x00000000013B0000 +86016            81088  1.802.11.4130        C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
 
mDNSResponder.exe 
PID: 2524, Threads: 2, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 5316 K (Peak: 6196 K), CommitSize: 1548 K, PageFaults: 1964 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 116 (1), Write: 160 (1), Other: 615524 (10445) 
CmdLine: "C:\Program Files\Bonjour\mDNSResponder.exe" 
Handles: 139 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:  45 	(Event) 
  Type: 15, Cnt:   8 	(Semaphore) 
  Type: 16, Cnt:   3 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   9 	() 
  Type: 31, Cnt:  12 	(File) 
  Type: 39, Cnt:  11 	(Key) 
  Type: 40, Cnt:   5 	(ALPC Port) 
  Type: 43, Cnt:  25 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7D1A50000 +667648          462184  3.0.0.10             C:\Program Files\Bonjour\mDNSResponder.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\POWRPROF.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\SYSTEM32\WKSCLI.DLL 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         C:\WINDOWS\SYSTEM32\SRVCLI.DLL 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\NETUTILS.DLL 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.DLL 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc.DLL 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc6.DLL 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\SYSTEM32\DNSAPI.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINNSI.DLL 
 
svchost.exe 
PID: 2540, Threads: 13, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 21332 K (Peak: 52016 K), CommitSize: 6468 K, PageFaults: 39271 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 5283531 (69), Write: 228 (2), Other: 317657 (11523) 
CmdLine: C:\WINDOWS\System32\svchost.exe -k utcsvc 
Handles: 386 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   7 	(Token) 
  Type:  8, Cnt:  25 	(Thread) 
  Type: 12, Cnt:  97 	(Event) 
  Type: 13, Cnt:   5 	(Mutant) 
  Type: 15, Cnt:  34 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   4 	(IoCompletion) 
  Type: 30, Cnt:  17 	() 
  Type: 31, Cnt:  13 	(File) 
  Type: 36, Cnt:   9 	(Section) 
  Type: 39, Cnt:  38 	(Key) 
  Type: 40, Cnt:  11 	(ALPC Port) 
  Type: 43, Cnt: 107 	(?) 
  Type: 44, Cnt:   1 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\System32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE681D0000 +1630208        1613664  10.0.10586.0         c:\windows\system32\diagtrack.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         c:\windows\system32\CRYPTSP.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         c:\windows\system32\XmlLite.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\system32\wkscli.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\system32\netutils.dll 
  0x00007FFE66400000 +389120          368640  10.0.10586.0         C:\WINDOWS\System32\diagtrack_win.dll 
  0x00007FFE717F0000 +655360          640464  10.0.10586.0         C:\WINDOWS\System32\wer.dll 
  0x00007FFE663C0000 +233472          210432  10.0.10586.63        C:\WINDOWS\System32\AEPIC.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE663A0000 +69632            49152  10.0.10586.0         C:\WINDOWS\System32\sfc_os.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\System32\CRYPTBASE.DLL 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        c:\windows\system32\WINHTTP.dll 
  0x00007FFE65160000 +77824            60928  10.0.10586.0         C:\WINDOWS\System32\srumapi.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         c:\windows\system32\USERENV.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\SYSTEM32\SspiCli.dll 
  0x00007FFE64280000 +159744          134144  10.0.10586.0         C:\Windows\System32\CourtesyEngine.dll 
  0x00007FFE64170000 +1052672        1036288  10.0.10586.0         C:\WINDOWS\System32\windowsperformancerecordercontrol.dll 
  0x00007FFE77500000 +114688          101776  10.0.10586.0         C:\WINDOWS\system32\imagehlp.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE63710000 +258048          233472  10.0.10586.0         C:\WINDOWS\System32\FlightSettings.dll 
  0x00007FFE6FF40000 +348160          334736  10.0.10586.11        C:\WINDOWS\System32\policymanager.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\WINDOWS\System32\msvcp110_win.dll 
  0x00007FFE633C0000 +724992          708608  10.0.10586.0         C:\Windows\System32\Windows.Security.Authentication.Web.Core.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\Windows\System32\twinapi.appcore.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE71C40000 +266240          248832  10.0.10586.63        C:\Windows\System32\usermgrproxy.dll 
  0x00007FFE62F70000 +307200          288768  10.0.10586.0         C:\Windows\System32\vaultcli.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE57C00000 +729088          697344  10.0.10586.0         C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\system32\DPAPI.DLL 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc.DLL 
  0x00007FFE64380000 +524288          496640  10.0.10586.0         c:\windows\system32\webio.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINNSI.DLL 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         c:\windows\system32\DNSAPI.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE75680000 +499712          479232  10.0.10586.63        C:\WINDOWS\system32\schannel.DLL 
  0x00007FFE63840000 +81920            60928  10.0.10586.0         C:\WINDOWS\SYSTEM32\mskeyprotect.dll 
  0x00007FFE75CA0000 +159744          146744  10.0.10586.0         C:\WINDOWS\SYSTEM32\ncrypt.dll 
  0x00007FFE75C60000 +237568          239592  10.0.10586.0         C:\WINDOWS\SYSTEM32\NTASN1.dll 
  0x00007FFE638F0000 +122880          110552  10.0.10586.0         C:\WINDOWS\system32\ncryptsslp.dll 
  0x00007FFE64440000 +192512          173056  10.0.10586.0         C:\WINDOWS\System32\cryptnet.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE6FA00000 +77824            57344  10.0.10586.0         C:\WINDOWS\System32\DEVRTL.dll 
 
GamingApp_Service.exe 
PID: 2548, Threads: 4, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 17080 K (Peak: 19568 K), CommitSize: 15716 K, PageFaults: 5907 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 95554 (25), Write: 3371 (6), Other: 8406 (1624) 
CmdLine: "C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe" 
Handles: 252 
  Type:  3, Cnt:   3 	(Directory) 
  Type:  8, Cnt:   7 	(Thread) 
  Type: 12, Cnt:  88 	(Event) 
  Type: 13, Cnt:   6 	(Mutant) 
  Type: 15, Cnt:   8 	(Semaphore) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   5 	(IoCompletion) 
  Type: 30, Cnt:  13 	() 
  Type: 31, Cnt:  10 	(File) 
  Type: 36, Cnt:   7 	(Section) 
  Type: 39, Cnt:  21 	(Key) 
  Type: 40, Cnt:   8 	(ALPC Port) 
  Type: 43, Cnt:  61 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000710000 +57344            36008  1.0.0.7              C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE692E0000 +425984          396288  10.0.10586.0         C:\WINDOWS\SYSTEM32\MSCOREE.DLL 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.dll 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE690B0000 +622592          617640  4.6.1038.0           C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE686F0000 +10027008      10003600  4.6.1063.1           C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll 
  0x00007FFE685F0000 +1011712         993632  12.0.52512.0         C:\WINDOWS\SYSTEM32\MSVCR120_CLR0400.dll 
  0x00007FFE66BA0000 +21786624      21789872  4.6.1063.1           C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\mscorlib\e407311405320c601b3800cccd2dcaae\mscorlib.ni.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE664B0000 +1069056        1059488  4.6.1063.1           C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE651C0000 +12664832      12658176  4.6.1038.0           C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\System\ba0761dc062f63268ab1ec3a23ca9764\System.ni.dll 
  0x00007FFE65110000 +266240          260608  4.6.1038.0           C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\System.Serv759bfb78#\722dcccb10a086eb5d68b5b2274b3b20\System.ServiceProcess.ni.dll 
  0x00007FFE64F70000 +180224          171008  4.6.1038.0           C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\System.Confe64a9051#\4f2120bedcda1bce058cebfcabd5d6c7\System.Configuration.Install.ni.dll 
  0x00007FFE645C0000 +9969664        9957888  4.6.1038.0           C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\System.Core\2bd89e89f8049b7dd4bc45136bf5015b\System.Core.ni.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE69160000 +131072          126640  4.6.1038.0           C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsecimpl.dll 
  0x00007FFE64470000 +696320          679776  5.82.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_396e892957c7fb25\COMCTL32.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.dll 
  0x00007FFE77500000 +114688          101776  10.0.10586.0         C:\WINDOWS\system32\imagehlp.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE64440000 +192512          173056  10.0.10586.0         C:\Windows\System32\cryptnet.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\shell32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE732C0000 +782336          779384  10.0.10586.0         C:\Windows\System32\taskschd.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\Windows\System32\SspiCli.dll 
  0x00007FFE642D0000 +278528          268288  4.6.1038.0           C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CustomMarshalers\deb643162446d4480c04930f8485f0cc\CustomMarshalers.ni.dll 
  0x00007FFE642B0000 +114688          105664  4.6.1038.0           C:\WINDOWS\Microsoft.Net\assembly\GAC_64\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll 
 
RichVideo.exe [32bit] 
PID: 2568, Threads: 3, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 5628 K (Peak: 6200 K), CommitSize: 1240 K, PageFaults: 1719 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 100 (23) 
CmdLine: "C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe" 
Handles: 123 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   3 	(Thread) 
  Type: 12, Cnt:  23 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   8 	() 
  Type: 31, Cnt:   4 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:  12 	(Key) 
  Type: 40, Cnt:   5 	(ALPC Port) 
  Type: 43, Cnt:  43 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +249856          253776  2.0.0.7413           C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +249856          253776  2.0.0.7413           C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\MSVCRT.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
 
PnkBstrA.exe [32bit] 
PID: 2596, Threads: 2, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 5304 K (Peak: 5916 K), CommitSize: 1156 K, PageFaults: 1644 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 188 (1), Other: 116 (112) 
CmdLine: C:\WINDOWS\system32\PnkBstrA.exe 
Handles: 125 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  8, Cnt:   3 	(Thread) 
  Type: 12, Cnt:  23 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   5 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:  13 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  45 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +90112            76152  0.0.0.0              C:\WINDOWS\system32\PnkBstrA.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +90112            76888  0.0.0.0              C:\WINDOWS\SysWOW64\PnkBstrA.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\PSAPI.DLL 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000073A90000 +32768            16384  10.0.10586.0         C:\WINDOWS\SysWOW64\WSOCK32.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
 
TomTomHOMEService.exe [32bit] 
PID: 2616, Threads: 3, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 3276 K (Peak: 3764 K), CommitSize: 836 K, PageFaults: 1030 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 514 (79) 
CmdLine: "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe" 
Handles: 54 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   2 	(Thread) 
  Type: 12, Cnt:  10 	(Event) 
  Type: 15, Cnt:   2 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   5 	(File) 
  Type: 39, Cnt:   5 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:   5 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +98304            93040  2.9.8.3669           C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +98304            93040  2.9.8.3669           C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073BE0000 +634880          626688  8.0.50727.9193       C:\WINDOWS\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9193_none_d09188224426efcd\MSVCR80.dll 
  0x0000000073B50000 +552960          548864  8.0.50727.9193       C:\WINDOWS\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9193_none_d09188224426efcd\MSVCP80.dll 
 
svchost.exe 
PID: 2648, Threads: 9, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 18888 K (Peak: 21704 K), CommitSize: 5552 K, PageFaults: 120160 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:03, UserTime: 00:00:08 
IO - Read: 10807376 (6254), Write: 1144244 (596), Other: 40750 (3849) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k appmodel 
Handles: 231 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  8, Cnt:  27 	(Thread) 
  Type: 12, Cnt:  66 	(Event) 
  Type: 15, Cnt:   8 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  10 	() 
  Type: 31, Cnt:  13 	(File) 
  Type: 36, Cnt:   6 	(Section) 
  Type: 39, Cnt:  15 	(Key) 
  Type: 40, Cnt:  13 	(ALPC Port) 
  Type: 43, Cnt:  57 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE66840000 +2764800        2745856  10.0.10586.0         c:\windows\system32\windows.staterepository.dll 
  0x00007FFE66780000 +606208          587776  10.0.10586.0         c:\windows\system32\StateRepository.Core.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE64540000 +507904          490496  10.0.10586.0         c:\windows\system32\tileobjserver.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         c:\windows\system32\msvcp110_win.dll 
  0x00007FFE6AA10000 +3117056        3079168  10.0.10586.0         c:\windows\system32\ESENT.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        c:\windows\system32\urlmon.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        c:\windows\system32\iertutil.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\system32\bcrypt.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\system32\USERENV.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\WINDOWS\SYSTEM32\mrmcorer.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\SYSTEM32\Bcp47Langs.dll 
 
hamachi-2.exe 
PID: 2788, Threads: 5, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 12252 K (Peak: 13064 K), CommitSize: 2824 K, PageFaults: 185314 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:01, UserTime: 00:00:00 
IO - Read: 629107 (2147), Write: 42673 (520), Other: 478572 (9855) 
CmdLine: "E:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s 
Handles: 220 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:   9 	(Thread) 
  Type: 12, Cnt:  49 	(Event) 
  Type: 13, Cnt:   6 	(Mutant) 
  Type: 15, Cnt:  19 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:  14 	(File) 
  Type: 36, Cnt:   5 	(Section) 
  Type: 39, Cnt:  12 	(Key) 
  Type: 40, Cnt:   4 	(ALPC Port) 
  Type: 43, Cnt:  81 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6F2EC0000 +2592768        2546184  2.2.0.410            E:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\CFGMGR32.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\WTSAPI32.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\SYSTEM32\USERENV.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\WININET.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\WINDOWS\SYSTEM32\urlmon.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\SYSTEM32\DNSAPI.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE73880000 +40960            26408  10.0.10586.0         C:\WINDOWS\SYSTEM32\DSROLE.DLL 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE6E4A0000 +13434880      13382656  11.0.10586.71        C:\WINDOWS\SYSTEM32\ieframe.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\comctl32.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE77FF0000 +32768            18656  10.0.10586.0         C:\WINDOWS\system32\PsApi.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\NETUTILS.DLL 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wkscli.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         C:\WINDOWS\SYSTEM32\srvcli.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.dll 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc.DLL 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\SYSTEM32\DEVOBJ.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc6.DLL 
  0x0000000076900000 +155648          132968  3.0.0.10             C:\Program Files\Bonjour\mdnsNSP.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\System32\fwpuclnt.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
 
MSISleepService.exe [32bit] 
PID: 2052, Threads: 2, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 3960 K (Peak: 4412 K), CommitSize: 800 K, PageFaults: 1184 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 452 (27) 
CmdLine: "E:\Program Files (x86)\MSI\ControlCenter\Sleep\MSISleepService.exe" 
Handles: 72 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   2 	(Thread) 
  Type: 12, Cnt:  17 	(Event) 
  Type: 15, Cnt:   2 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   4 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:   5 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  13 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +290816          282624  0.0.0.0              E:\Program Files (x86)\MSI\ControlCenter\Sleep\MSISleepService.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +290816          282624  0.0.0.0              E:\Program Files (x86)\MSI\ControlCenter\Sleep\MSISleepService.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
 
TeamViewer_Service.exe [32bit] 
PID: 3184, Threads: 18, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 16052 K (Peak: 28852 K), CommitSize: 6060 K, PageFaults: 13027 
TIME - Start 29.01.2016 12:19:26, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 7835526 (19), Write: 896333 (125), Other: 316680 (6462) 
CmdLine: "E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe" 
Handles: 384 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  5, Cnt:   2 	(Token) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:  35 	(Thread) 
  Type: 12, Cnt: 109 	(Event) 
  Type: 13, Cnt:   6 	(Mutant) 
  Type: 15, Cnt:  37 	(Semaphore) 
  Type: 16, Cnt:   4 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   6 	(IoCompletion) 
  Type: 30, Cnt:  14 	() 
  Type: 31, Cnt:  21 	(File) 
  Type: 36, Cnt:   7 	(Section) 
  Type: 39, Cnt:  26 	(Key) 
  Type: 40, Cnt:   9 	(ALPC Port) 
  Type: 43, Cnt:  91 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00000000011B0000 +7094272        6889232  11.0.53254.0         E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x00000000011B0000 +7094272        6889232  11.0.53254.0         E:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000736B0000 +3706880        3679232  5.0.10586.0          C:\WINDOWS\SysWOW64\msi.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x0000000073680000 +32768            16896  10.0.10586.0         C:\WINDOWS\SysWOW64\wshqos.dll 
  0x0000000073670000 +28672            10752  10.0.10586.0         C:\WINDOWS\SysWOW64\wshtcpip.DLL 
  0x0000000073660000 +28672            11264  10.0.10586.0         C:\WINDOWS\SysWOW64\wship6.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\propsys.dll 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\Iphlpapi.DLL 
  0x00000000733D0000 +290816          269824  10.0.10586.0         C:\WINDOWS\SysWOW64\fwpuclnt.dll 
  0x00000000733C0000 +32768            13312  10.0.10586.71        C:\Windows\SysWOW64\rasadhlp.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000076F70000 +110592           99176  10.0.10586.0         C:\WINDOWS\SysWOW64\imagehlp.dll 
  0x0000000073320000 +126976          111608  10.0.10586.0         C:\WINDOWS\SysWOW64\gpapi.dll 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x00000000732A0000 +53248            35840  10.0.10586.0         C:\WINDOWS\SysWOW64\wbem\wbemprox.dll 
  0x0000000073230000 +421888          393216  10.0.10586.0         C:\WINDOWS\SysWOW64\wbemcomn.dll 
  0x0000000073210000 +69632            49152  10.0.10586.0         C:\WINDOWS\SysWOW64\wbem\wbemsvc.dll 
  0x0000000073150000 +782336          765440  10.0.10586.0         C:\WINDOWS\SysWOW64\wbem\fastprox.dll 
  0x0000000072810000 +212992          200192  10.0.10586.0         C:\WINDOWS\SysWOW64\netprofm.dll 
  0x0000000072800000 +36864            20992  10.0.10586.0         C:\WINDOWS\SysWOW64\npmproxy.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\WTSAPI32.dll 
  0x00000000727B0000 +278528          260360  10.0.10586.0         C:\WINDOWS\SysWOW64\WINSTA.dll 
  0x0000000072740000 +421888          400896  10.0.10586.11        C:\WINDOWS\SysWOW64\WINSPOOL.DRV 
  0x0000000072720000 +90112            85720  10.0.10586.0         C:\WINDOWS\SysWOW64\MPR.dll 
  0x0000000072710000 +36864            20992  10.0.10586.0         C:\WINDOWS\SysWOW64\drprov.dll 
  0x00000000726F0000 +73728            57856  10.0.10586.0         C:\WINDOWS\SysWOW64\ntlanman.dll 
  0x00000000726D0000 +106496           86016  10.0.10586.0         C:\WINDOWS\SysWOW64\davclnt.dll 
  0x00000000726C0000 +45056            22528  10.0.10586.0         C:\WINDOWS\SysWOW64\DAVHLPR.dll 
  0x00000000729E0000 +65536            56320  10.0.10586.0         C:\WINDOWS\SysWOW64\wkscli.dll 
  0x00000000729C0000 +61440            43008  10.0.10586.0         C:\WINDOWS\SysWOW64\cscapi.dll 
  0x00000000729D0000 +40960            34088  10.0.10586.0         C:\WINDOWS\SysWOW64\netutils.dll 
  0x00000000726B0000 +61440            43520  10.0.10586.0         C:\WINDOWS\SysWOW64\browcli.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
 
svchost.exe 
PID: 3268, Threads: 5, Owner: NT AUTHORITY\NETWORK SERVICE 
MEM - WrkSet: 6200 K (Peak: 8556 K), CommitSize: 1472 K, PageFaults: 12502 
TIME - Start 29.01.2016 12:19:27, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 117174 (2185) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted 
Handles: 123 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  8, Cnt:   5 	(Thread) 
  Type: 12, Cnt:  34 	(Event) 
  Type: 15, Cnt:   7 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   9 	() 
  Type: 31, Cnt:   7 	(File) 
  Type: 36, Cnt:   2 	(Section) 
  Type: 39, Cnt:   8 	(Key) 
  Type: 40, Cnt:   7 	(ALPC Port) 
  Type: 43, Cnt:  29 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE63E80000 +409600          390656  10.0.10586.0         c:\windows\system32\ipsecsvc.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE75370000 +299008          277504  10.0.10586.0         c:\windows\system32\AUTHZ.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         c:\windows\system32\fwpuclnt.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE63E60000 +110592           90112  10.0.10586.0         c:\windows\system32\FwRemoteSvr.DLL 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         c:\windows\system32\fwbase.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         C:\WINDOWS\system32\FWPolicyIOMgr.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         c:\windows\system32\IPHLPAPI.DLL 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         c:\windows\system32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         c:\windows\system32\dhcpcsvc.DLL 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\sspicli.dll 
 
LMIGuardianSvc.exe 
PID: 3348, Threads: 3, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 6464 K (Peak: 7256 K), CommitSize: 1440 K, PageFaults: 1974 
TIME - Start 29.01.2016 12:19:27, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 194 (105) 
CmdLine: "E:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc" /escort 2788 /CUSTOM Hamachi  
Handles: 131 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:  22 	(Event) 
  Type: 15, Cnt:  10 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   6 	(File) 
  Type: 36, Cnt:   4 	(Section) 
  Type: 39, Cnt:   9 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  49 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7DD530000 +438272          417552  10.1.0.1726          E:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE63C90000 +1892352        1860880  10.1.0.1726          E:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianDll.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\WININET.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\COMCTL32.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
 
taskeng.exe 
PID: 2588, Threads: 5, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 5812 K (Peak: 6016 K), CommitSize: 1252 K, PageFaults: 1804 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 14252 (8), Write: 0 (0), Other: 1630 (202) 
CmdLine: taskeng.exe {30DC457B-53F3-4FE5-BFFD-4EAD15805036} 
Handles: 116 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt:   5 	(Thread) 
  Type: 12, Cnt:  34 	(Event) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   9 	() 
  Type: 31, Cnt:   4 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:   9 	(Key) 
  Type: 40, Cnt:   7 	(ALPC Port) 
  Type: 43, Cnt:  23 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF733330000 +315392          293888  10.0.10586.0         C:\WINDOWS\system32\taskeng.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\system32\bcrypt.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE629F0000 +36864            15872  10.0.10586.0         C:\Windows\System32\tschannel.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\WINDOWS\system32\XmlLite.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         C:\WINDOWS\system32\apphelp.dll 
 
sihost.exe 
PID: 2736, Threads: 12, Owner: M?jPC\Pepík 
MEM - WrkSet: 21912 K (Peak: 22164 K), CommitSize: 5328 K, PageFaults: 10982 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:01, UserTime: 00:00:02 
IO - Read: 1808115 (325), Write: 0 (0), Other: 49430 (7121) 
CmdLine: sihost.exe 
Handles: 439 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  6, Cnt:   5 	(Job) 
  Type:  8, Cnt:  35 	(Thread) 
  Type: 12, Cnt: 115 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt:  11 	(Semaphore) 
  Type: 16, Cnt:  41 	(Timer) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:  41 	() 
  Type: 31, Cnt:   7 	(File) 
  Type: 36, Cnt:   8 	(Section) 
  Type: 39, Cnt:  20 	(Key) 
  Type: 40, Cnt:  52 	(ALPC Port) 
  Type: 43, Cnt:  90 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF752240000 +90112            72704  10.0.10586.0         C:\WINDOWS\system32\sihost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         C:\WINDOWS\system32\CoreMessaging.dll 
  0x00007FFE63480000 +2654208        2653816  0.0.0.0              C:\WINDOWS\system32\CoreUIComponents.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE632A0000 +122880           97792  10.0.10586.0         C:\WINDOWS\system32\desktopshellext.dll 
  0x00007FFE62FE0000 +73728            58368  10.0.10586.0         C:\Windows\System32\Windows.Shell.ServiceHostBuilder.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE63140000 +888832          870400  10.0.10586.17        C:\Windows\System32\modernexecserver.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE74E90000 +172032          167336  10.0.10586.0         C:\Windows\System32\RMCLIENT.dll 
  0x00007FFE630F0000 +307200          285696  10.0.10586.0         C:\Windows\System32\VEEventDispatcher.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\WINDOWS\SYSTEM32\twinapi.appcore.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\Windows\System32\bcrypt.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\Windows\System32\msvcp110_win.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE63090000 +200704          178176  10.0.10586.0         C:\Windows\System32\ClipboardServer.dll 
  0x00007FFE63030000 +380928          357888  10.0.10586.0         C:\WINDOWS\system32\activationmanager.dll 
  0x00007FFE63000000 +143360          121856  10.0.10586.0         C:\WINDOWS\System32\AppointmentActivation.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE71C40000 +266240          248832  10.0.10586.63        C:\Windows\System32\usermgrproxy.dll 
  0x00007FFE730F0000 +65536            43520  10.0.10586.63        C:\WINDOWS\SYSTEM32\usermgrcli.dll 
  0x00007FFE62F20000 +278528          254464  10.0.10586.0         C:\WINDOWS\system32\ExecModelClient.dll 
  0x00007FFE62F10000 +57344            37376  10.0.10586.0         C:\Windows\System32\NotificationPlatformComponent.dll 
  0x00007FFE62E70000 +618496          594944  10.0.10586.0         C:\Windows\System32\AppContracts.dll 
  0x00007FFE62D80000 +663552          638976  10.0.10586.0         C:\WINDOWS\system32\ShareHost.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\Windows.Storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE62D60000 +36864            14848  10.0.10586.0         C:\WINDOWS\system32\WpPortingLibrary.dll 
  0x00007FFE62B00000 +2478080        2444288  10.0.10586.11        C:\WINDOWS\System32\twinui.appcore.dll 
  0x00007FFE629D0000 +86016            66560  10.0.10586.0         C:\WINDOWS\system32\execmodelproxy.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\system32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.dll 
  0x00007FFE5FFA0000 +69632            46592  10.0.10586.0         C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\system32\dwmapi.dll 
  0x00007FFE62820000 +69632            49152  10.0.10586.0         C:\Windows\System32\OnDemandBrokerClient.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE66840000 +2764800        2745856  10.0.10586.0         C:\Windows\System32\Windows.StateRepository.dll 
  0x00007FFE66780000 +606208          587776  10.0.10586.0         C:\Windows\System32\StateRepository.Core.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\WINDOWS\SYSTEM32\mrmcorer.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\SYSTEM32\Bcp47Langs.dll 
 
muachost.exe [32bit] 
PID: 3300, Threads: 1, Owner: M?jPC\Pepík 
MEM - WrkSet: 1432 K (Peak: 8272 K), CommitSize: 1728 K, PageFaults: 2722 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 424 (344) 
CmdLine: C:\WINDOWS\SysWOW64\muachost.exe 
Handles: 133 
  Type:  3, Cnt:   4 	(Directory) 
  Type: 12, Cnt:  18 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:   6 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   5 	() 
  Type: 31, Cnt:   8 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  12 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  62 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000A40000 +1728512        1692840  1.0.0.1              C:\WINDOWS\SysWOW64\muachost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000A40000 +1728512        1692840  1.0.0.1              C:\WINDOWS\SysWOW64\muachost.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000073F10000 +991232          965120  10.0.10586.0         C:\WINDOWS\SysWOW64\COMDLG32.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000072740000 +421888          400896  10.0.10586.11        C:\WINDOWS\SysWOW64\WINSPOOL.DRV 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.dll 
  0x00000000726C0000 +45056            22528  10.0.10586.0         C:\WINDOWS\SysWOW64\DAVHLPR.DLL 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x00000000721D0000 +344064          322560  7.2.10586.0          C:\WINDOWS\SysWOW64\OLEACC.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000072040000 +122880          107008  10.0.10586.0         C:\WINDOWS\SysWOW64\oledlg.dll 
  0x00000000722D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
 
taskhostw.exe 
PID: 3276, Threads: 11, Owner: M?jPC\Pepík 
MEM - WrkSet: 17536 K (Peak: 17972 K), CommitSize: 6676 K, PageFaults: 9616 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:02, UserTime: 00:00:00 
IO - Read: 11611122 (474), Write: 5746688 (299), Other: 111026 (10514) 
CmdLine: taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E} 
Handles: 355 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:  15 	(Token) 
  Type:  8, Cnt:  26 	(Thread) 
  Type: 12, Cnt:  98 	(Event) 
  Type: 13, Cnt:  10 	(Mutant) 
  Type: 15, Cnt:  12 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   8 	() 
  Type: 31, Cnt:  15 	(File) 
  Type: 36, Cnt:  14 	(Section) 
  Type: 39, Cnt:  29 	(Key) 
  Type: 40, Cnt:  28 	(ALPC Port) 
  Type: 43, Cnt:  86 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6DE160000 +102400           90440  10.0.10586.0         C:\WINDOWS\system32\taskhostw.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\system32\dwmapi.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE63790000 +53248            29696  10.0.10586.0         C:\WINDOWS\system32\MsCtfMonitor.dll 
  0x00007FFE63220000 +499712          478720  10.0.10586.0         C:\WINDOWS\system32\MSUTB.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\system32\WINSTA.dll 
  0x00007FFE62FC0000 +106496           89088  10.0.10586.0         C:\WINDOWS\System32\PlaySndSrv.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\system32\wininet.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\system32\iertutil.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE6AA10000 +3117056        3079168  10.0.10586.0         C:\WINDOWS\system32\ESENT.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\System32\WINMM.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\System32\WINMMBASE.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\SYSTEM32\userenv.dll 
  0x00007FFE629A0000 +86016            67584  10.0.10586.0         C:\WINDOWS\SYSTEM32\profext.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.DLL 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE6F480000 +458752          440120  10.0.10586.0         C:\WINDOWS\System32\MMDevAPI.DLL 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\System32\PROPSYS.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\System32\DEVOBJ.dll 
  0x00007FFE59300000 +270336          245248  10.0.10586.0         C:\WINDOWS\system32\wdmaud.drv 
  0x00007FFE72510000 +45056            32592  10.0.10586.0         C:\WINDOWS\system32\AVRT.dll 
  0x00007FFE6AE30000 +32768            22752  10.0.10586.0         C:\WINDOWS\system32\ksuser.dll 
  0x00007FFE6A2F0000 +557056          536256  10.0.10586.71        C:\WINDOWS\system32\AUDIOSES.DLL 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE6AD10000 +49152            27648  10.0.10586.0         C:\WINDOWS\system32\msacm32.drv 
  0x00007FFE6A7A0000 +114688          105392  10.0.10586.0         C:\WINDOWS\system32\MSACM32.dll 
  0x00007FFE6A790000 +40960            25088  10.0.10586.0         C:\WINDOWS\system32\midimap.dll 
 
RTSS.exe [32bit] 
PID: 1528, Threads: 2, Owner: M?jPC\Pepík 
MEM - WrkSet: 2144 K (Peak: 32180 K), CommitSize: 3436 K, PageFaults: 150821 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 6192666 (628), Write: 5443809 (2), Other: 29122 (3865) 
CmdLine: "E:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe" /s 
Handles: 210 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   2 	(Thread) 
  Type: 12, Cnt:  27 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   9 	() 
  Type: 31, Cnt:  21 	(File) 
  Type: 36, Cnt:  14 	(Section) 
  Type: 39, Cnt:  44 	(Key) 
  Type: 40, Cnt:   6 	(ALPC Port) 
  Type: 43, Cnt:  61 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +233472          197632  6.3.0.7688           E:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +233472          197632  6.3.0.7688           E:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000010000000 +69632            56832  1.10.0.0             E:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll 
  0x0000000000A10000 +368640          353792  1.40.0.0             E:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll 
  0x00000000001D0000 +86016            71680  1.10.0.0             E:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x0000000072300000 +3788800        3766600  9.0.30729.6161       C:\WINDOWS\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\WININET.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x00000000722D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\UxTheme.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x000000006D860000 +573440          572272  10.0.10586.0         C:\Windows\SysWOW64\taskschd.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\PROPSYS.dll 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\Windows\SysWOW64\urlmon.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\Windows\SysWOW64\iertutil.dll 
  0x0000000003620000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
 
RuntimeBroker.exe 
PID: 3896, Threads: 244, Owner: M?jPC\Pepík 
MEM - WrkSet: 55504 K (Peak: 70296 K), CommitSize: 39252 K, PageFaults: 168616 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:11, UserTime: 00:00:07 
IO - Read: 12003390 (127711), Write: 3732 (60), Other: 1997614 (101112) 
CmdLine: C:\Windows\System32\RuntimeBroker.exe -Embedding 
Handles: 1607 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt: 311 	(Thread) 
  Type: 12, Cnt: 906 	(Event) 
  Type: 13, Cnt:   7 	(Mutant) 
  Type: 15, Cnt:  32 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  16 	() 
  Type: 31, Cnt:  19 	(File) 
  Type: 36, Cnt:  24 	(Section) 
  Type: 39, Cnt: 100 	(Key) 
  Type: 40, Cnt:  16 	(ALPC Port) 
  Type: 43, Cnt: 158 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7B2150000 +94208            85720  10.0.10586.0         C:\Windows\System32\RuntimeBroker.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\Windows\System32\bcrypt.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\Windows\System32\iertutil.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\Windows\System32\USERENV.dll 
  0x00007FFE629A0000 +86016            67584  10.0.10586.0         C:\WINDOWS\SYSTEM32\profext.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE6B810000 +1822720        1797120  10.0.10586.0         C:\Windows\System32\Windows.UI.Immersive.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\Windows\System32\twinapi.appcore.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\Windows\System32\UxTheme.dll 
  0x00007FFE5DD40000 +339968          317440  10.0.10586.0         C:\WINDOWS\system32\windows.cortana.onecore.dll 
  0x00007FFE5DC00000 +126976          105984  10.0.10586.0         C:\Windows\System32\Windows.Cortana.ProxyStub.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE62F20000 +278528          254464  10.0.10586.0         C:\Windows\System32\execmodelclient.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         C:\Windows\System32\CoreMessaging.dll 
  0x00007FFE596E0000 +704512          686080  11.0.10586.0         C:\Windows\System32\ieproxy.dll 
  0x00007FFE5DDE0000 +737280          730352  10.0.10586.0         C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\system32\PROPSYS.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FF651400000 +8175616        7477600  10.0.10586.63        C:\WINDOWS\system32\ntoskrnl.exe 
  0x00007FFE60E20000 +53248            31232  10.0.10586.0         C:\WINDOWS\system32\LINKINFO.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         C:\WINDOWS\system32\apphelp.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\Windows\System32\dwmapi.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\system32\Bcp47Langs.dll 
  0x00007FFE79A40000 +454656          442720  10.0.10586.0         C:\WINDOWS\system32\coml2.dll 
  0x00007FFE58420000 +835584          817152  10.0.10586.0         C:\WINDOWS\system32\Windows.Storage.Search.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\WINDOWS\system32\XmlLite.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\system32\edputil.dll 
  0x00007FFE66840000 +2764800        2745856  10.0.10586.0         C:\Windows\System32\Windows.StateRepository.dll 
  0x00007FFE66780000 +606208          587776  10.0.10586.0         C:\Windows\System32\StateRepository.Core.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\comctl32.dll 
  0x00007FFE610F0000 +897024          882688  10.0.10586.0         C:\WINDOWS\system32\ntshrui.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         C:\WINDOWS\system32\srvcli.dll 
  0x00007FFE66380000 +73728            52224  10.0.10586.0         C:\Windows\System32\cscapi.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         C:\WINDOWS\system32\MPR.dll 
  0x00007FFE6A4C0000 +45056            25600  10.0.10586.0         C:\WINDOWS\System32\drprov.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\System32\WINSTA.dll 
  0x00007FFE6A380000 +90112            71168  10.0.10586.0         C:\WINDOWS\System32\ntlanman.dll 
  0x00007FFE69AA0000 +131072          103424  10.0.10586.0         C:\WINDOWS\System32\davclnt.dll 
  0x00007FFE6CE00000 +49152            27136  10.0.10586.0         C:\WINDOWS\System32\DAVHLPR.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\System32\wkscli.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\System32\netutils.dll 
  0x00007FFE57C00000 +729088          697344  10.0.10586.0         C:\Windows\System32\Windows.Security.Authentication.OnlineId.dll 
  0x00007FFE5D820000 +94208            74240  10.0.10586.0         C:\WINDOWS\SYSTEM32\msauserext.dll 
  0x00007FFE57BD0000 +180224          146432  10.0.10586.0         C:\WINDOWS\SYSTEM32\AuthBroker.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        C:\WINDOWS\SYSTEM32\WINHTTP.dll 
  0x00007FFE628E0000 +724992          702464  10.0.10586.0         C:\Windows\System32\twinapi.dll 
  0x00007FFE72D20000 +1773568        1776768  10.0.10586.0         C:\WINDOWS\system32\windowscodecs.dll 
  0x00007FFE74770000 +151552          132608  10.0.10586.0         C:\WINDOWS\system32\sppc.dll 
  0x00007FFE5E9A0000 +143360          123392  7.0.10586.0          C:\WINDOWS\system32\mssprxy.dll 
  0x00007FFE6CAA0000 +692224          674816  10.0.10586.11        C:\Windows\System32\Windows.UI.dll 
  0x00007FFE60F90000 +315392          297472  10.0.10586.0         C:\Windows\System32\thumbcache.dll 
  0x00007FFE56980000 +696320          677376  7.0.10586.0          C:\WINDOWS\System32\StructuredQuery.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE6AF00000 +294912          259072  10.0.10586.0         C:\WINDOWS\System32\MSWB7.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\Windows\System32\MrmCoreR.dll 
  0x00007FFE614C0000 +11579392      11545088  10.0.10586.71        C:\Windows\System32\TwinUI.dll 
  0x00007FFE630F0000 +307200          285696  10.0.10586.0         C:\Windows\System32\VEEventDispatcher.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\Windows\System32\msvcp110_win.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\Windows\System32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\Windows\System32\CRYPTBASE.dll 
  0x00007FFE5C450000 +1597440        1570816  10.0.10586.0         C:\Windows\System32\dfshim.dll 
  0x00007FFE692E0000 +425984          396288  10.0.10586.0         C:\Windows\System32\mscoree.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\Windows\System32\urlmon.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\Windows\System32\VERSION.dll 
  0x00007FFE690B0000 +622592          617640  4.6.1038.0           C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll 
  0x00007FFE686F0000 +10027008      10003600  4.6.1063.1           C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll 
  0x00007FFE685F0000 +1011712         993632  12.0.52512.0         C:\WINDOWS\SYSTEM32\MSVCR120_CLR0400.dll 
  0x00007FFE5DDA0000 +36864            14848  10.0.10586.0         C:\WINDOWS\system32\IconCodecService.dll 
  0x00007FFE55C90000 +921600          897024  10.0.10586.0         C:\Windows\System32\MbaeApiPublic.dll 
  0x00007FFE60F60000 +90112            80600  8.1.10586.17         C:\WINDOWS\SYSTEM32\wwapi.dll 
  0x00007FFE58190000 +573440          549888  10.0.10586.0         C:\WINDOWS\SYSTEM32\searchfolder.dll 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\Windows\System32\Secur32.dll 
  0x00007FFE5B5F0000 +253952          233472  10.0.10586.0         C:\Windows\System32\MLANG.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\Windows\System32\WININET.dll 
 
explorer.exe 
PID: 3160, Threads: 110, Owner: M?jPC\Pepík 
MEM - WrkSet: 171560 K (Peak: 180788 K), CommitSize: 108236 K, PageFaults: 5135691 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:03:10, UserTime: 00:02:53 
IO - Read: 1910013083 (100113), Write: 2011298015 (44564), Other: 36592419 (778409) 
CmdLine: C:\WINDOWS\Explorer.EXE 
   ## Type: 22 -> Composition 
   ## Type: 41 -> DuplicateHandle error: 0x5 
Handles: 4569 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  7, Cnt:   3 	(Process) 
  Type:  8, Cnt: 240 	(Thread) 
  Type: 12, Cnt: 1206 	(Event) 
  Type: 13, Cnt: 507 	(Mutant) 
  Type: 15, Cnt:  87 	(Semaphore) 
  Type: 16, Cnt:   8 	(Timer) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 22, Cnt:   3 	(Composition) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   4 	(IoCompletion) 
  Type: 30, Cnt: 288 	() 
  Type: 31, Cnt: 624 	(File) 
  Type: 36, Cnt: 162 	(Section) 
  Type: 39, Cnt: 830 	(Key) 
  Type: 40, Cnt:  62 	(ALPC Port) 
  Type: 41, Cnt:   1 	() 
  Type: 42, Cnt:   1 	(WmiGuid) 
  Type: 43, Cnt: 526 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF600130000 +4489216        4502864  10.0.10586.0         C:\WINDOWS\Explorer.EXE 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         C:\WINDOWS\system32\apphelp.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\SHCORE.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\SYSTEM32\PROPSYS.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\SYSTEM32\UxTheme.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\SYSTEM32\dwmapi.dll 
  0x00007FFE735D0000 +2785280        2772584  10.0.10586.17        C:\WINDOWS\SYSTEM32\d3d11.dll 
  0x00007FFE74530000 +929792          911648  10.0.10586.11        C:\WINDOWS\SYSTEM32\dcomp.dll 
  0x00007FFE628E0000 +724992          702464  10.0.10586.0         C:\WINDOWS\SYSTEM32\TWINAPI.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\WINDOWS\SYSTEM32\twinapi.appcore.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\SYSTEM32\SspiCli.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\SYSTEM32\USERENV.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\WINDOWS\SYSTEM32\MrmCoreR.dll 
  0x00007FFE73520000 +663552          651840  10.0.10586.0         C:\WINDOWS\SYSTEM32\dxgi.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE6A690000 +163840          143872  10.0.10586.0         C:\WINDOWS\System32\IDStore.dll 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\System32\SAMLIB.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\SYSTEM32\Bcp47Langs.dll 
  0x00007FFE628C0000 +86016            67584  10.0.10586.0         C:\WINDOWS\SYSTEM32\SETTINGSYNCPOLICY.dll 
  0x00007FFE6FF40000 +348160          334736  10.0.10586.11        C:\WINDOWS\SYSTEM32\policymanager.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\WINDOWS\SYSTEM32\msvcp110_win.dll 
  0x00007FFE632C0000 +1019904         990720  10.0.10586.0         C:\WINDOWS\system32\SettingSyncCore.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\system32\CRYPTSP.dll 
  0x00007FFE62A00000 +843776          821248  10.0.10586.0         C:\Windows\System32\TokenBroker.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\comctl32.dll 
  0x00007FFE62850000 +413696          389120  10.0.10586.0         C:\WINDOWS\SYSTEM32\SndVolSSO.DLL 
  0x00007FFE6F480000 +458752          440120  10.0.10586.0         C:\WINDOWS\System32\MMDevApi.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\System32\DEVOBJ.dll 
  0x00007FFE627B0000 +434176          411648  7.2.10586.0          C:\WINDOWS\SYSTEM32\OLEACC.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\Windows\System32\iertutil.dll 
  0x00007FFE629A0000 +86016            67584  10.0.10586.0         C:\WINDOWS\SYSTEM32\profext.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE62760000 +303104          279040  10.0.10586.0         C:\WINDOWS\system32\dataexchange.dll 
  0x00007FFE72D20000 +1773568        1776768  10.0.10586.0         C:\WINDOWS\system32\windowscodecs.dll 
  0x00007FFE61FF0000 +4849664        4827648  10.0.10586.0         C:\WINDOWS\system32\explorerframe.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\system32\edputil.dll 
  0x00007FFE79A40000 +454656          442720  10.0.10586.0         C:\WINDOWS\system32\coml2.dll 
  0x00007FFE614C0000 +11579392      11545088  10.0.10586.71        C:\Windows\System32\TwinUI.dll 
  0x00007FFE6B810000 +1822720        1797120  10.0.10586.0         C:\Windows\System32\Windows.UI.Immersive.dll 
  0x00007FFE61470000 +315392          296448  10.0.10586.0         C:\Windows\System32\windows.immersiveshell.serviceprovider.dll 
  0x00007FFE61460000 +49152            37744  10.0.10586.0         C:\WINDOWS\SYSTEM32\WLDP.DLL 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE747D0000 +151552          133120  10.0.10586.0         C:\WINDOWS\SYSTEM32\SLC.dll 
  0x00007FFE74770000 +151552          132608  10.0.10586.0         C:\WINDOWS\SYSTEM32\sppc.dll 
  0x00007FFE62B00000 +2478080        2444288  10.0.10586.11        C:\WINDOWS\System32\twinui.appcore.dll 
  0x00007FFE740D0000 +778240          764976  10.0.10586.0         C:\WINDOWS\System32\CoreMessaging.dll 
  0x00007FFE63480000 +2654208        2653816  0.0.0.0              C:\WINDOWS\System32\CoreUIComponents.dll 
  0x00007FFE61340000 +1179648        1159168  10.0.10586.0         C:\WINDOWS\System32\ApplicationFrame.dll 
  0x00007FFE70240000 +5525504        5503488  10.0.10586.71        C:\WINDOWS\System32\d2d1.dll 
  0x00007FFE6A0D0000 +446464          425472  10.0.10586.0         C:\WINDOWS\SYSTEM32\PhotoMetadataHandler.dll 
  0x00007FFE61260000 +892928          870400  10.0.10586.17        C:\WINDOWS\System32\wpncore.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        C:\WINDOWS\System32\WINHTTP.dll 
  0x00007FFE611D0000 +548864          529408  10.0.10586.0         C:\Windows\System32\NotificationController.dll 
  0x00007FFE630F0000 +307200          285696  10.0.10586.0         C:\Windows\System32\VEEventDispatcher.dll 
  0x00007FFE610F0000 +897024          882688  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntshrui.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\Windows\System32\WINMM.dll 
  0x0000000004DB0000 +180224          166344  10.0.10586.0         C:\Windows\System32\WINMMBASE.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         C:\WINDOWS\SYSTEM32\srvcli.dll 
  0x00007FFE610C0000 +176128          164864  10.0.10586.0         C:\Windows\System32\AboveLockAppHost.dll 
  0x00007FFE66380000 +73728            52224  10.0.10586.0         C:\WINDOWS\SYSTEM32\cscapi.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\netutils.dll 
  0x00007FFE61090000 +155648          135168  10.0.10586.0         C:\WINDOWS\System32\npsm.dll 
  0x00007FFE629D0000 +86016            66560  10.0.10586.0         C:\WINDOWS\system32\execmodelproxy.dll 
  0x00007FFE60FE0000 +712704          688640  10.0.10586.0         C:\Windows\System32\Windows.Networking.Connectivity.dll 
  0x00007FFE60F90000 +315392          297472  10.0.10586.0         C:\Windows\System32\thumbcache.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE60F80000 +49152            29184  10.0.10586.0         C:\WINDOWS\system32\NotificationControllerPS.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\Windows\System32\IPHLPAPI.DLL 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72770000 +397312          389984  10.0.10586.0         C:\WINDOWS\SYSTEM32\wlanapi.dll 
  0x00007FFE60F60000 +90112            80600  8.1.10586.17         C:\Windows\System32\wwapi.dll 
  0x00007FFE60EC0000 +618496          588288  10.0.10586.0         C:\WINDOWS\System32\wlidprov.dll 
  0x00007FFE60E90000 +139264          117760  10.0.10586.0         C:\Windows\System32\wcmapi.dll 
  0x00007FFE74E90000 +172032          167336  10.0.10586.0         C:\Windows\System32\RMCLIENT.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE69BB0000 +376832          356352  10.0.10586.0         C:\Windows\System32\NInput.dll 
  0x00007FFE64380000 +524288          496640  10.0.10586.0         C:\WINDOWS\System32\webio.dll 
  0x00007FFE722B0000 +1503232        1519232  8.17.10.1429         C:\WINDOWS\SYSTEM32\aticfx64.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE72240000 +163840          162784  8.14.1.6489          C:\WINDOWS\SYSTEM32\atiuxp64.dll 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\Windows\System32\WINNSI.DLL 
  0x00007FFE70830000 +13139968      13313544  8.17.10.644          C:\WINDOWS\SYSTEM32\atidxx64.dll 
  0x00007FFE732C0000 +782336          779384  10.0.10586.0         C:\Windows\System32\taskschd.dll 
  0x00007FFE72AD0000 +307200          285696  10.0.10586.0         C:\WINDOWS\System32\UIAnimation.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\System32\DNSAPI.dll 
  0x00007FFE6DEB0000 +40960            17408  10.0.10586.71        C:\Windows\System32\rasadhlp.dll 
  0x00007FFE60E20000 +53248            31232  10.0.10586.0         C:\WINDOWS\SYSTEM32\LINKINFO.dll 
  0x00007FFE699E0000 +389120          368128  10.0.10586.0         C:\WINDOWS\SYSTEM32\dsreg.dll 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wkscli.dll 
  0x00007FFE75780000 +40960            15872  10.0.10586.0         C:\WINDOWS\SYSTEM32\DPAPI.DLL 
  0x00007FFE5EF10000 +1646592        1641664  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\FileSyncShell64.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\WININET.dll 
  0x00007FFE5EE60000 +679936          660128  12.0.21005.1         C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\MSVCP120.dll 
  0x00007FFE5ED70000 +978944          963232  12.0.21005.1         C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\MSVCR120.dll 
  0x00007FFE5FF40000 +225280          208384  10.0.10586.0         C:\Windows\System32\EhStorShell.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE5E9A0000 +143360          123392  7.0.10586.0          C:\WINDOWS\system32\mssprxy.dll 
  0x00007FFE6DB00000 +102400           79360  10.0.10586.0         C:\Windows\System32\samcli.dll 
  0x00007FFE69850000 +1101824        1092456  12.0.10586.35        C:\Windows\System32\MFPlat.DLL 
  0x00007FFE69B80000 +176128          152376  12.0.10586.0         C:\Windows\System32\RTWorkQ.DLL 
  0x00007FFE5B300000 +409600          387072  10.0.10586.0         C:\WINDOWS\system32\stobject.dll 
  0x00007FFE72A90000 +69632            45056  10.0.10586.0         C:\WINDOWS\system32\WMICLNT.dll 
  0x00007FFE66840000 +2764800        2745856  10.0.10586.0         C:\Windows\System32\Windows.StateRepository.dll 
  0x00007FFE66780000 +606208          587776  10.0.10586.0         C:\Windows\System32\StateRepository.Core.dll 
  0x00007FFE5B100000 +2088960        2064896  10.0.10586.0         C:\WINDOWS\system32\BatMeter.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE74060000 +323584          304640  10.0.10586.0         C:\Windows\System32\InputSwitch.dll 
  0x00007FFE5AFA0000 +1417216        1390592  10.0.10586.0         C:\WINDOWS\System32\Windows.UI.Shell.dll 
  0x00007FFE6CC80000 +434176          418816  10.0.10586.0         C:\WINDOWS\System32\wincorlib.DLL 
  0x00007FFE6F980000 +499712          473088  2001.12.10941.16384   C:\WINDOWS\system32\es.dll 
  0x00007FFE5D390000 +503808          486912  10.0.10586.0         C:\WINDOWS\system32\prnfldr.dll 
  0x00007FFE5AF20000 +495616          479232  10.0.10586.0         C:\WINDOWS\system32\dxp.dll 
  0x00007FFE5D340000 +270336          244736  10.0.10586.0         C:\WINDOWS\system32\SHDOCVW.dll 
  0x00007FFE5AF10000 +65536            48640  10.0.10586.0         C:\WINDOWS\SYSTEM32\atlthunk.dll 
  0x00007FFE5AEF0000 +94208            79360  2007.94.10586.0      C:\WINDOWS\system32\Syncreg.dll 
  0x00007FFE5AEA0000 +327680          310784  10.0.10586.0         C:\WINDOWS\System32\Actioncenter.dll 
  0x00007FFE72C80000 +409600          400336  10.0.10586.0         C:\WINDOWS\System32\wevtapi.dll 
  0x00007FFE5AE80000 +86016            69120  10.0.10586.0         C:\WINDOWS\system32\wpdshserviceobj.dll 
  0x00007FFE6FEC0000 +208896          191488  10.0.10586.0         C:\Windows\System32\PortableDeviceTypes.dll 
  0x00007FFE72970000 +659456          639488  10.0.10586.0         C:\Windows\System32\PortableDeviceApi.dll 
  0x00007FFE6A2F0000 +557056          536256  10.0.10586.71        C:\WINDOWS\SYSTEM32\AUDIOSES.DLL 
  0x00007FFE5AE40000 +262144          243712  10.0.10586.0         C:\WINDOWS\system32\SettingMonitor.dll 
  0x00007FFE5ABF0000 +2371584        2352128  10.0.10586.20        C:\WINDOWS\system32\authui.dll 
  0x00007FFE5AB90000 +380928          365056  7.0.10586.0          C:\WINDOWS\System32\srchadmin.dll 
  0x00007FFE5A870000 +1835008        1814528  10.0.10586.17        C:\WINDOWS\System32\pnidui.dll 
  0x00007FFE6A280000 +143360          123392  10.0.10586.0         C:\WINDOWS\system32\NetworkStatus.dll 
  0x00007FFE6A200000 +495616          474624  10.0.10586.0         C:\Windows\System32\NetSetupShim.dll 
  0x00007FFE6A1E0000 +126976          115040  10.0.10586.35        C:\Windows\System32\NetSetupApi.dll 
  0x00007FFE74880000 +245760          223232  10.0.10586.0         C:\Windows\System32\bthprops.cpl 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\Windows\System32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\Windows\System32\dhcpcsvc.DLL 
  0x00007FFE5A520000 +3432448        3415040  10.0.10586.0         C:\WINDOWS\System32\SyncCenter.dll 
  0x00007FFE734E0000 +262144          242688  10.0.10586.0         C:\WINDOWS\System32\netprofm.dll 
  0x00007FFE72BA0000 +532480          515584  10.0.10586.0         C:\Windows\System32\imapi2.dll 
  0x00007FFE6CEE0000 +655360          636928  10.0.10586.0         C:\WINDOWS\System32\hgcpl.dll 
  0x00007FFE6CE40000 +622592          599040  10.0.10586.0         C:\WINDOWS\System32\DUser.dll 
  0x00007FFE6D110000 +487424          464384  10.0.10586.0         C:\WINDOWS\System32\provsvc.dll 
  0x00007FFE75680000 +499712          479232  10.0.10586.63        C:\WINDOWS\system32\schannel.DLL 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.dll 
  0x00007FFE63840000 +81920            60928  10.0.10586.0         C:\WINDOWS\SYSTEM32\mskeyprotect.dll 
  0x00007FFE75CA0000 +159744          146744  10.0.10586.0         C:\WINDOWS\SYSTEM32\ncrypt.dll 
  0x00007FFE75C60000 +237568          239592  10.0.10586.0         C:\WINDOWS\SYSTEM32\NTASN1.dll 
  0x00007FFE638F0000 +122880          110552  10.0.10586.0         C:\WINDOWS\system32\ncryptsslp.dll 
  0x00007FFE596E0000 +704512          686080  11.0.10586.0         C:\Windows\System32\ieproxy.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE59A10000 +1736704        1717248  10.0.10586.20        C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_db007f1392e69ef4\gdiplus.dll 
  0x00007FFE6AE20000 +40960            21504  5.0.10586.0          C:\WINDOWS\SYSTEM32\msiltcfg.dll 
  0x00007FFE6D7C0000 +3383296        3350528  5.0.10586.0          C:\WINDOWS\SYSTEM32\msi.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\Windows\System32\urlmon.dll 
  0x00007FFE593F0000 +311296          287744  10.0.10586.0         C:\WINDOWS\SYSTEM32\apprepapi.dll 
  0x00007FFE75580000 +53248            42920  10.0.10586.0         C:\WINDOWS\SYSTEM32\tbs.dll 
  0x00007FFE59300000 +270336          245248  10.0.10586.0         C:\WINDOWS\SYSTEM32\wdmaud.drv 
  0x00007FFE6AE30000 +32768            22752  10.0.10586.0         C:\WINDOWS\SYSTEM32\ksuser.dll 
  0x00007FFE72510000 +45056            32592  10.0.10586.0         C:\WINDOWS\SYSTEM32\AVRT.dll 
  0x00007FFE6AD10000 +49152            27648  10.0.10586.0         C:\WINDOWS\SYSTEM32\msacm32.drv 
  0x00007FFE6A7A0000 +114688          105392  10.0.10586.0         C:\WINDOWS\SYSTEM32\MSACM32.dll 
  0x00007FFE6A790000 +40960            25088  10.0.10586.0         C:\WINDOWS\SYSTEM32\midimap.dll 
  0x00007FFE5E950000 +294912          278528  10.0.10586.0         C:\WINDOWS\System32\NotificationObjFactory.dll 
  0x00007FFE57E10000 +303104          276480  10.0.10586.0         C:\WINDOWS\system32\windowscodecsext.dll 
  0x00007FFE57D70000 +593920          578560  10.0.10586.0         C:\WINDOWS\SYSTEM32\mscms.dll 
  0x00007FFE5FF80000 +110592           98704  10.0.10586.0         C:\WINDOWS\SYSTEM32\capauthz.dll 
  0x00007FFE6A640000 +65536            50176  10.0.10586.0         C:\WINDOWS\SYSTEM32\pcacli.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         C:\WINDOWS\SYSTEM32\MPR.dll 
  0x00007FFE663A0000 +69632            49152  10.0.10586.0         C:\WINDOWS\System32\sfc_os.dll 
  0x00007FFE6FA00000 +77824            57344  10.0.10586.0         C:\WINDOWS\system32\DEVRTL.dll 
  0x00007FFE6CE10000 +188416          169984  10.0.10586.0         C:\WINDOWS\System32\wscinterop.dll 
  0x00007FFE74830000 +217088          202472  10.0.10586.71        C:\WINDOWS\System32\WSCAPI.dll 
  0x00007FFE58220000 +1183744        1163776  10.0.10586.0         C:\WINDOWS\System32\wscui.cpl 
  0x00007FFE56680000 +1314816        1291776  10.0.10586.0         C:\WINDOWS\System32\werconcpl.dll 
  0x00007FFE63A30000 +319488          293888  10.0.10586.0         C:\WINDOWS\System32\framedynos.dll 
  0x00007FFE717F0000 +655360          640464  10.0.10586.0         C:\WINDOWS\System32\wer.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE72AB0000 +81920            60416  10.0.10586.0         C:\WINDOWS\System32\hcproviders.dll 
  0x00007FFE6FDB0000 +135168          117248  10.0.10586.0         C:\Windows\System32\Windows.Networking.UX.ProxyStub.dll 
  0x00007FFE58400000 +73728            56832  7.8.10586.0          C:\Windows\System32\BitsProxy.dll 
  0x00007FFE5DDE0000 +737280          730352  10.0.10586.0         C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 
  0x00007FF651400000 +8175616        7477600  10.0.10586.63        C:\WINDOWS\system32\ntoskrnl.exe 
  0x00007FFE564C0000 +1781760        1755648  10.0.10586.0         C:\WINDOWS\system32\DUI70.dll 
  0x00007FFE6E4A0000 +13434880      13382656  11.0.10586.71        C:\Windows\System32\ieframe.dll 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\SYSTEM32\Secur32.dll 
  0x00007FFE5B5F0000 +253952          233472  10.0.10586.0         C:\WINDOWS\SYSTEM32\MLANG.dll 
  0x00007FFE5DDA0000 +36864            14848  10.0.10586.0         C:\WINDOWS\system32\IconCodecService.dll 
  0x00007FFE62510000 +667648          645120  10.0.10586.0         C:\Windows\System32\wpnapps.dll 
  0x00007FFE6B690000 +638976          619520  10.0.10586.0         C:\WINDOWS\SYSTEM32\efswrt.dll 
  0x00007FFE6A4C0000 +45056            25600  10.0.10586.0         C:\WINDOWS\System32\drprov.dll 
  0x00007FFE6A380000 +90112            71168  10.0.10586.0         C:\WINDOWS\System32\ntlanman.dll 
  0x00007FFE69AA0000 +131072          103424  10.0.10586.0         C:\WINDOWS\System32\davclnt.dll 
  0x00007FFE6CE00000 +49152            27136  10.0.10586.0         C:\WINDOWS\System32\DAVHLPR.dll 
  0x00007FFE53400000 +1208320        1191936  10.0.10586.0         C:\WINDOWS\system32\NetworkExplorer.dll 
  0x00007FFE58420000 +835584          817152  10.0.10586.0         C:\WINDOWS\system32\Windows.Storage.Search.dll 
  0x00007FFE5E170000 +520192          504832  12.0.10586.0         C:\Windows\System32\dlnashext.dll 
  0x00007FFE63B90000 +348160          316928  10.0.10586.0         C:\WINDOWS\system32\msieftp.dll 
  0x00007FFE750C0000 +49152            34816  10.0.10586.0         C:\WINDOWS\SYSTEM32\HID.DLL 
  0x00007FFE6B430000 +2490368        2445312  10.0.10586.0         C:\WINDOWS\system32\dwrite.dll 
  0x00007FFE5BFD0000 +2551808        2548432  10.0.10586.0         C:\WINDOWS\SYSTEM32\D3D10Warp.dll 
  0x00007FFE69A40000 +241664          221696  10.0.10586.0         C:\WINDOWS\System32\NPSMDesktopProvider.dll 
  0x00007FFE56980000 +696320          677376  7.0.10586.0          C:\WINDOWS\System32\StructuredQuery.dll 
  0x00007FFE6AF00000 +294912          259072  10.0.10586.0         C:\WINDOWS\System32\MSWB7.dll 
  0x00007FFE69C50000 +3379200        3355136  10.0.10586.17        C:\WINDOWS\SYSTEM32\MsftEdit.dll 
  0x00007FFE65060000 +667648          647168  10.0.10586.0         C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll 
  0x00007FFE5E480000 +4202496        4170240  10.0.10586.0         C:\WINDOWS\system32\UIRibbon.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\WINDOWS\system32\XmlLite.dll 
  0x0000000008280000 +593920          584704  10.0.10586.0         C:\WINDOWS\SYSTEM32\UIRibbonRes.dll 
  0x00007FFE64FF0000 +409600          392192  10.0.10586.0         C:\WINDOWS\system32\zipfldr.dll 
  0x00007FFE64FB0000 +233472          214016  10.0.10586.0         C:\Windows\System32\WorkFoldersShell.dll 
  0x00007FFE63A90000 +1019904        1020096  12.0.10586.35        C:\WINDOWS\System32\mfsrcsnk.dll 
  0x00007FFE5BCA0000 +1425408        1395200  7.2.10586.17         C:\Windows\System32\UIAutomationCore.DLL 
  0x00007FFE5DB00000 +806912          787456  10.0.10586.0         C:\Windows\System32\Windows.Web.dll 
  0x00007FFE59690000 +327680          301056  10.0.10586.0         C:\Windows\System32\Windows.System.Launcher.dll 
  0x00007FFE62D60000 +36864            14848  10.0.10586.0         C:\Windows\System32\WpPortingLibrary.dll 
  0x00007FFE62490000 +49152            40816  10.0.10586.0         C:\Windows\System32\dsclient.dll 
  0x00007FFE6A9B0000 +126976          103936  10.0.10586.0         C:\Windows\System32\DevDispItemProvider.dll 
  0x00007FFE57680000 +2109440        2088960  10.0.10586.0         C:\WINDOWS\system32\wpdshext.dll 
  0x00007FFE637B0000 +155648          134656  10.0.10586.0         C:\Windows\System32\EhStorAPI.dll 
  0x00007FFE72C70000 +61440            42496  10.0.10586.0         C:\WINDOWS\SYSTEM32\VirtDisk.dll 
  0x00007FFE629C0000 +40960            20992  10.0.10586.0         C:\WINDOWS\SYSTEM32\FLTLIB.DLL 
  0x00007FFE6CAA0000 +692224          674816  10.0.10586.11        C:\Windows\System32\Windows.UI.dll 
  0x00007FFE6B250000 +1593344        1567744  10.0.10586.0         C:\Windows\System32\Windows.Globalization.dll 
  0x00007FFE72CF0000 +196608          177152  10.0.10586.0         C:\WINDOWS\SYSTEM32\globinputhost.dll 
  0x00007FFE5E270000 +475136          458752  12.0.10586.17        C:\Windows\System32\PlayToDevice.dll 
  0x00007FFE5E350000 +180224          159744  10.0.10586.0         C:\WINDOWS\system32\twext.dll 
  0x00007FFE5E1F0000 +274432          214616  5.1.0.0              E:\Program Files\WinRAR\rarext64.dll 
  0x0000000074A00000 +270336          236232  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\shellExt.dll 
  0x00007FFE5DEA0000 +356352          334848  4.9.10586.0          C:\Program Files\Windows Defender\shellext.dll 
  0x00007FFE5D870000 +913408          897024  4.9.10586.0          C:\Program Files\Windows Defender\mpclient.dll 
  0x00007FFE77500000 +114688          101776  10.0.10586.0         C:\WINDOWS\system32\imagehlp.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE5DF30000 +2355200        1902592  8.110.10586.0        C:\WINDOWS\System32\msxml3.dll 
  0x00007FFE73950000 +45056            29184  1.0.1.1              C:\Program Files (x86)\PSPad editor\pspshellx64.dll 
  0x00007FFE6CD70000 +28672             8704  10.0.10586.0         C:\WINDOWS\SYSTEM32\MSIMG32.dll 
  0x00007FFE5DD10000 +196608          177152  10.0.10586.0         C:\WINDOWS\system32\syncui.dll 
  0x00007FFE69A80000 +118784           98816  10.0.10586.0         C:\WINDOWS\system32\SYNCENG.dll 
  0x00007FFE68560000 +73728            55808  10.0.10586.0         C:\WINDOWS\system32\acppage.dll 
  0x000000000D8C0000 +12288             3072  10.0.10586.0         C:\WINDOWS\system32\sfc.dll 
  0x00007FFE5D4A0000 +929792          906440  6.14.10.2001         C:\Program Files\AMD\CNext\CNext\atiacm64.dll 
  0x000000000C740000 +12288             5120  6.14.10.2001         C:\Program Files\AMD\CNext\CNext\atiamcsy.dll 
  0x00007FFE74620000 +204800          183808  10.0.10586.0         C:\WINDOWS\System32\shacct.dll 
  0x00007FFE5E3B0000 +151552          134656  10.0.10586.0         C:\WINDOWS\SYSTEM32\CHARTV.dll 
  0x00007FFE58190000 +573440          549888  10.0.10586.0         C:\WINDOWS\SYSTEM32\searchfolder.dll 
  0x00007FFE6A780000 +57344            33792  10.0.10586.0         C:\WINDOWS\SYSTEM32\tokenbinding.dll 
  0x00007FFE6F7C0000 +86016            66048  10.0.10586.0         C:\WINDOWS\SYSTEM32\ondemandconnroutehelper.dll 
  0x00007FFE72B50000 +61440            43520  10.0.10586.11        C:\Windows\System32\bcastdvr.proxy.dll 
  0x0000000076900000 +155648          132968  3.0.0.10             C:\Program Files\Bonjour\mdnsNSP.dll 
  0x00007FFE71C90000 +421888          402432  10.0.10586.0         C:\WINDOWS\System32\fwpuclnt.dll 
 
GoogleUpdate.exe [32bit] 
PID: 3308, Threads: 3, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 916 K (Peak: 8908 K), CommitSize: 1904 K, PageFaults: 4510 
TIME - Start 29.01.2016 12:19:32, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 9024 (12), Write: 348 (3), Other: 5752 (1018) 
CmdLine: "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c 
Handles: 177 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   3 	(Thread) 
  Type: 12, Cnt:  32 	(Event) 
  Type: 13, Cnt:   4 	(Mutant) 
  Type: 15, Cnt:  18 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:   7 	(File) 
  Type: 36, Cnt:   4 	(Section) 
  Type: 39, Cnt:  18 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:  69 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000860000 +114688          107848  1.3.26.9             C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000860000 +114688          107848  1.3.26.9             C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000072FA0000 +1703936        1681224  1.3.29.1             C:\Program Files (x86)\Google\Update\1.3.29.1\goopdate.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\PSAPI.DLL 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
  0x0000000072EF0000 +675840          653312  10.0.10586.71        C:\WINDOWS\SysWOW64\RASAPI32.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\WTSAPI32.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x00000000736B0000 +3706880        3679232  5.0.10586.0          C:\WINDOWS\SysWOW64\msi.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\UxTheme.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\WININET.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x0000000072A20000 +143360          123392  10.0.10586.0         C:\WINDOWS\SysWOW64\rasman.dll 
  0x00000000729E0000 +65536            56320  10.0.10586.0         C:\WINDOWS\SysWOW64\WKSCLI.DLL 
  0x00000000729D0000 +40960            34088  10.0.10586.0         C:\WINDOWS\SysWOW64\NETUTILS.DLL 
  0x00000000729C0000 +61440            43008  10.0.10586.0         C:\WINDOWS\SysWOW64\cscapi.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000072880000 +1306624        1196544  10.0.10586.0         C:\WINDOWS\SysWOW64\dbghelp.dll 
  0x0000000072850000 +135168          118784  10.0.10586.0         C:\WINDOWS\SysWOW64\dbgcore.DLL 
  0x0000000072230000 +598016          581632  10.0.10586.0         C:\WINDOWS\SysWOW64\apphelp.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000072000000 +241664          223232  10.0.10586.0         C:\WINDOWS\SysWOW64\mstask.dll 
 
SearchIndexer.exe 
PID: 4512, Threads: 100, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 43256 K (Peak: 51164 K), CommitSize: 39384 K, PageFaults: 107605 
TIME - Start 29.01.2016 12:19:33, KernelTime: 00:00:11, UserTime: 00:00:23 
IO - Read: 10911654 (2605), Write: 29049210 (2587), Other: 48362770 (678061) 
CmdLine: C:\WINDOWS\system32\SearchIndexer.exe /Embedding 
Handles: 867 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   5 	(Token) 
  Type:  7, Cnt:   2 	(Process) 
  Type:  8, Cnt: 135 	(Thread) 
  Type: 12, Cnt: 428 	(Event) 
  Type: 13, Cnt:   4 	(Mutant) 
  Type: 15, Cnt:  23 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   3 	(WindowStation) 
  Type: 21, Cnt:   2 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:  50 	(File) 
  Type: 36, Cnt:  23 	(Section) 
  Type: 39, Cnt:  93 	(Key) 
  Type: 40, Cnt:   9 	(ALPC Port) 
  Type: 43, Cnt:  71 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7DAC20000 +962560          938496  7.0.10586.0          C:\WINDOWS\system32\SearchIndexer.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\SHCORE.dll 
  0x00007FFE5FBD0000 +3600384        3577344  7.0.10586.0          C:\WINDOWS\system32\TQUERY.DLL 
  0x00007FFE5F940000 +2629632        2597376  7.0.10586.0          C:\WINDOWS\system32\MSSRCH.DLL 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE6AA10000 +3117056        3079168  10.0.10586.0         C:\WINDOWS\system32\ESENT.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\sspicli.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\system32\WINSTA.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE5E9D0000 +28672            11776  10.0.10586.0         C:\WINDOWS\system32\Msidle.dll 
  0x00007FFE6FF40000 +348160          334736  10.0.10586.11        C:\WINDOWS\SYSTEM32\policymanager.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\WINDOWS\system32\msvcp110_win.dll 
  0x00007FFE5E9A0000 +143360          123392  7.0.10586.0          C:\WINDOWS\system32\mssprxy.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\system32\CRYPTBASE.DLL 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\system32\propsys.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE6D630000 +1581056        1558528  10.0.10586.0         C:\WINDOWS\system32\VSSAPI.DLL 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE6D610000 +98304            70144  10.0.10586.0         C:\WINDOWS\system32\VssTrace.DLL 
  0x00007FFE6DB00000 +102400           79360  10.0.10586.0         C:\WINDOWS\system32\samcli.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\system32\netutils.dll 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\system32\SAMLIB.dll 
  0x00007FFE6F980000 +499712          473088  2001.12.10941.16384   C:\WINDOWS\System32\ES.DLL 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\system32\USERENV.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE6AF00000 +294912          259072  10.0.10586.0         C:\WINDOWS\System32\MSWB7.dll 
  0x00007FFE6AEE0000 +98304            78848  10.0.10586.0         C:\WINDOWS\system32\elscore.dll 
  0x00007FFE59950000 +724992          704000  10.0.10586.0         C:\WINDOWS\system32\ElsLad.dll 
  0x00007FFE73FF0000 +421888          414232  10.0.10586.0         C:\WINDOWS\system32\Bcp47Langs.dll 
  0x00007FFE6B250000 +1593344        1567744  10.0.10586.0         C:\Windows\System32\Windows.Globalization.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\shell32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
 
egui.exe 
PID: 1212, Threads: 9, Owner: M?jPC\Pepík 
MEM - WrkSet: 62940 K (Peak: 72880 K), CommitSize: 50708 K, PageFaults: 191438 
TIME - Start 29.01.2016 12:19:35, KernelTime: 00:00:12, UserTime: 00:01:30 
IO - Read: 18137820 (631), Write: 0 (0), Other: 70244 (21782) 
CmdLine: "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
   ## Type: 30 -> DuplicateHandle error: 0x5 
Handles: 408 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:  11 	(Thread) 
  Type: 12, Cnt:  81 	(Event) 
  Type: 13, Cnt:  30 	(Mutant) 
  Type: 15, Cnt:  16 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  14 	() 
  Type: 31, Cnt:  22 	(File) 
  Type: 36, Cnt:  20 	(Section) 
  Type: 39, Cnt:  60 	(Key) 
  Type: 40, Cnt:  15 	(ALPC Port) 
  Type: 43, Cnt: 120 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF73FB60000 +5562368        5544648  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\egui.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76EB0000 +1093632        1063936  10.0.10586.0         C:\WINDOWS\system32\COMDLG32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\COMCTL32.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE6CE00000 +49152            27136  10.0.10586.0         C:\WINDOWS\SYSTEM32\DAVHLPR.DLL 
  0x00007FFE59BC0000 +5668864        5634720  12.0.21005.1         C:\Program Files\ESET\ESET Smart Security\mfc120u.dll 
  0x00007FFE625C0000 +978944          963232  12.0.21005.1         C:\Program Files\ESET\ESET Smart Security\MSVCR120.dll 
  0x00007FFE626B0000 +679936          660128  12.0.21005.1         C:\Program Files\ESET\ESET Smart Security\MSVCP120.dll 
  0x00007FFE5A130000 +4071424        4040904  1.0.10.13            C:\Program Files\ESET\ESET Smart Security\sciter-x.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\SYSTEM32\UxTheme.dll 
  0x00007FFE59A10000 +1736704        1717248  10.0.10586.20        C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_db007f1392e69ef4\gdiplus.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\WINDOWS\SYSTEM32\urlmon.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x00007FFE627B0000 +434176          411648  7.2.10586.0          C:\WINDOWS\SYSTEM32\OLEACC.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\WININET.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\SYSTEM32\fwbase.dll 
  0x00007FFE70020000 +1622016        1500672  10.0.10586.0         C:\WINDOWS\SYSTEM32\dbghelp.dll 
  0x00007FFE77FF0000 +32768            18656  10.0.10586.0         C:\WINDOWS\system32\psapi.dll 
  0x00007FFE71590000 +151552          137216  10.0.10586.0         C:\WINDOWS\SYSTEM32\dbgcore.DLL 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\version.dll 
  0x00000000765A0000 +155648          142024  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\ToastNotify.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE62510000 +667648          645120  10.0.10586.0         C:\Windows\System32\wpnapps.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\Windows\System32\twinapi.appcore.dll 
  0x00007FFE74E90000 +172032          167336  10.0.10586.0         C:\Windows\System32\RMCLIENT.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\Windows\System32\bcrypt.dll 
  0x00007FFE61FF0000 +4849664        4827648  10.0.10586.0         C:\WINDOWS\system32\explorerframe.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\system32\edputil.dll 
  0x0000000076580000 +131072          117960  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiHips.dll 
  0x0000000076560000 +98304            88776  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiOnlineHelp.dll 
  0x00000000764B0000 +688128          685256  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiScan.dll 
  0x0000000076490000 +73728            62664  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiAmon.dll 
  0x00007FFE6CDE0000 +69632            53960  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiEmon.dll 
  0x00007FFE6CDD0000 +61440            49864  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiDmon.dll 
  0x0000000076400000 +577536          566984  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiEpfw.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE6CDA0000 +155648          143560  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiSmon.dll 
  0x0000000076360000 +634880          624328  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiUpdate.dll 
  0x00007FFE6CD80000 +114688          103112  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiMailPlugins.dll 
  0x0000000076310000 +270336          261320  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiParental.dll 
  0x0000000076300000 +61440            49352  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiDevmon.dll 
  0x00000000762C0000 +212992          202440  9.0.349.0            C:\Program Files\ESET\ESET Smart Security\eguiAntitheft.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\SYSTEM32\dwmapi.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE6DB00000 +102400           79360  10.0.10586.0         C:\WINDOWS\SYSTEM32\SAMCLI.DLL 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\NETUTILS.DLL 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\SYSTEM32\SAMLIB.dll 
  0x00007FFE6CD70000 +28672             8704  10.0.10586.0         C:\WINDOWS\SYSTEM32\Msimg32.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE72D20000 +1773568        1776768  10.0.10586.0         C:\WINDOWS\SYSTEM32\WindowsCodecs.dll 
  0x00007FFE60F90000 +315392          297472  10.0.10586.0         C:\Windows\System32\thumbcache.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\SYSTEM32\PROPSYS.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\SYSTEM32\SspiCli.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         C:\WINDOWS\SYSTEM32\MPR.dll 
  0x00007FFE6A640000 +65536            50176  10.0.10586.0         C:\WINDOWS\SYSTEM32\pcacli.dll 
  0x00007FFE663A0000 +69632            49152  10.0.10586.0         C:\WINDOWS\System32\sfc_os.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE6FA00000 +77824            57344  10.0.10586.0         C:\WINDOWS\SYSTEM32\DEVRTL.dll 
  0x00007FFE62760000 +303104          279040  10.0.10586.0         C:\WINDOWS\system32\dataexchange.dll 
  0x00007FFE735D0000 +2785280        2772584  10.0.10586.17        C:\WINDOWS\system32\d3d11.dll 
  0x00007FFE74530000 +929792          911648  10.0.10586.11        C:\WINDOWS\system32\dcomp.dll 
  0x00007FFE73520000 +663552          651840  10.0.10586.0         C:\WINDOWS\system32\dxgi.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\wintrust.dll 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.dll 
  0x00007FFE77500000 +114688          101776  10.0.10586.0         C:\WINDOWS\system32\imagehlp.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE64440000 +192512          173056  10.0.10586.0         C:\WINDOWS\SYSTEM32\cryptnet.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE72520000 +45056            33104  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINNSI.DLL 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE6CB70000 +1105920        1098640  10.0.10586.0         C:\WINDOWS\SYSTEM32\MrmCoreR.dll 
  0x00007FFE628E0000 +724992          702464  10.0.10586.0         C:\Windows\System32\twinapi.dll 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\SYSTEM32\Secur32.dll 
  0x00007FFE5B5F0000 +253952          233472  10.0.10586.0         C:\WINDOWS\SYSTEM32\MLANG.dll 
 
GoogleCrashHandler.exe [32bit] 
PID: 5380, Threads: 3, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 916 K (Peak: 6236 K), CommitSize: 1436 K, PageFaults: 2563 
TIME - Start 29.01.2016 12:19:36, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 1148 (25), Write: 644 (13), Other: 1802 (272) 
CmdLine: "C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe" 
Handles: 143 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   2 	(Thread) 
  Type: 12, Cnt:  18 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:  18 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   9 	() 
  Type: 31, Cnt:   6 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:  10 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:  57 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000830000 +266240          245576  1.3.29.1             C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000830000 +266240          245576  1.3.29.1             C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x00000000729D0000 +40960            34088  10.0.10586.0         C:\WINDOWS\SysWOW64\NETUTILS.DLL 
  0x00000000729E0000 +65536            56320  10.0.10586.0         C:\WINDOWS\SysWOW64\wkscli.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x00000000729C0000 +61440            43008  10.0.10586.0         C:\WINDOWS\SysWOW64\cscapi.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000072880000 +1306624        1196544  10.0.10586.0         C:\WINDOWS\SysWOW64\dbghelp.dll 
  0x0000000072850000 +135168          118784  10.0.10586.0         C:\WINDOWS\SysWOW64\dbgcore.DLL 
 
GoogleCrashHandler64.exe 
PID: 5408, Threads: 3, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 276 K (Peak: 5972 K), CommitSize: 1444 K, PageFaults: 2060 
TIME - Start 29.01.2016 12:19:36, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 116 (1), Write: 160 (1), Other: 1502 (242) 
CmdLine: "C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe" 
Handles: 135 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   2 	(Thread) 
  Type: 12, Cnt:  16 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:  16 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   9 	() 
  Type: 31, Cnt:   5 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:   8 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:  58 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6836C0000 +327680          307016  1.3.29.1             C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.dll 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\SYSTEM32\USERENV.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\NETUTILS.DLL 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wkscli.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE66380000 +73728            52224  10.0.10586.0         C:\WINDOWS\SYSTEM32\cscapi.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE70020000 +1622016        1500672  10.0.10586.0         C:\WINDOWS\SYSTEM32\dbghelp.dll 
  0x00007FFE71590000 +151552          137216  10.0.10586.0         C:\WINDOWS\SYSTEM32\dbgcore.DLL 
 
TeamViewer.exe [32bit] 
PID: 5688, Threads: 17, Owner: M?jPC\Pepík 
MEM - WrkSet: 47528 K (Peak: 52080 K), CommitSize: 16276 K, PageFaults: 55491 
TIME - Start 29.01.2016 12:19:37, KernelTime: 00:00:06, UserTime: 00:00:01 
IO - Read: 44759596 (821), Write: 4801 (47), Other: 104675 (5199) 
CmdLine: "E:\Program Files (x86)\TeamViewer\TeamViewer.exe" 
Handles: 603 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:  29 	(Thread) 
  Type: 12, Cnt: 174 	(Event) 
  Type: 13, Cnt:  33 	(Mutant) 
  Type: 15, Cnt:  44 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   7 	(IoCompletion) 
  Type: 30, Cnt:  14 	() 
  Type: 31, Cnt:  28 	(File) 
  Type: 36, Cnt:  22 	(Section) 
  Type: 39, Cnt:  54 	(Key) 
  Type: 40, Cnt:  13 	(ALPC Port) 
  Type: 43, Cnt: 164 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000E20000 +23007232      22780688  11.0.53254.0         E:\Program Files (x86)\TeamViewer\TeamViewer.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000E20000 +23007232      22780688  11.0.53254.0         E:\Program Files (x86)\TeamViewer\TeamViewer.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000736B0000 +3706880        3679232  5.0.10586.0          C:\WINDOWS\SysWOW64\msi.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\propsys.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x0000000073680000 +32768            16896  10.0.10586.0         C:\WINDOWS\SysWOW64\wshqos.dll 
  0x0000000073670000 +28672            10752  10.0.10586.0         C:\WINDOWS\SysWOW64\wshtcpip.DLL 
  0x0000000073660000 +28672            11264  10.0.10586.0         C:\WINDOWS\SysWOW64\wship6.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x00000000718F0000 +2203648        2185840  10.0.10586.17        C:\WINDOWS\SysWOW64\d3d11.dll 
  0x0000000071860000 +536576          525288  10.0.10586.0         C:\WINDOWS\SysWOW64\dxgi.dll 
  0x0000000071690000 +1880064        1865584  10.0.10586.0         C:\WINDOWS\SysWOW64\d3d9.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x00000000715A0000 +974848          551424  10.0.10586.0         C:\WINDOWS\SysWOW64\ddraw.dll 
  0x0000000071590000 +28672            11776  10.0.10586.3         C:\WINDOWS\SysWOW64\DCIMAN32.dll 
  0x0000000071560000 +143360          124928  10.0.10586.0         C:\WINDOWS\SysWOW64\msvfw32.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x00000000722D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000071450000 +81920            69632  10.0.10586.0         C:\WINDOWS\SysWOW64\Avicap32.dll 
  0x00000000712A0000 +1753088        1542656  10.0.10586.71        C:\WINDOWS\SysWOW64\quartz.dll 
  0x0000000071290000 +53248            40448  10.0.10586.0         C:\WINDOWS\SysWOW64\Magnification.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\WTSAPI32.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000071180000 +528384          515072  5.31.23.1231         C:\WINDOWS\SysWOW64\RICHED20.DLL 
  0x0000000071120000 +90112            77824  10.0.10586.0         C:\WINDOWS\SysWOW64\USP10.dll 
  0x0000000071140000 +200704          186368  3.10.349.0           C:\WINDOWS\SysWOW64\msls31.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x0000000076F70000 +110592           99176  10.0.10586.0         C:\WINDOWS\SysWOW64\imagehlp.dll 
  0x0000000073320000 +126976          111608  10.0.10586.0         C:\WINDOWS\SysWOW64\gpapi.dll 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\WINDOWS\SysWOW64\urlmon.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\WINDOWS\SysWOW64\iertutil.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000070730000 +634880          613888  10.0.10586.71        C:\WINDOWS\SysWOW64\WINHTTP.dll 
  0x0000000070710000 +106496           90624  1.0.2536.0           C:\WINDOWS\SysWOW64\mapi32.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x00000000707E0000 +266240          250640  11.0.53254.0         E:\Program Files (x86)\TeamViewer\tv_w32.dll 
  0x0000000071B50000 +73728            52736  10.0.10586.0         C:\WINDOWS\SysWOW64\ondemandconnroutehelper.dll 
  0x0000000071B30000 +40960            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\secur32.dll 
  0x0000000070330000 +1519616        1522152  10.0.10586.0         C:\WINDOWS\SysWOW64\WindowsCodecs.dll 
  0x00000000727B0000 +278528          260360  10.0.10586.0         C:\WINDOWS\SysWOW64\WINSTA.dll 
  0x000000006F790000 +12165120      12126208  11.0.10586.71        C:\Windows\SysWOW64\ieframe.dll 
  0x0000000071F60000 +266240          248832  10.0.10586.0         C:\WINDOWS\SysWOW64\dataexchange.dll 
  0x0000000071EB0000 +684032          675064  10.0.10586.11        C:\WINDOWS\SysWOW64\dcomp.dll 
  0x0000000071B70000 +839680          836208  10.0.10586.0         C:\WINDOWS\SysWOW64\twinapi.appcore.dll 
  0x0000000071E20000 +528384          521704  10.0.10586.0         C:\WINDOWS\SysWOW64\sxs.dll 
  0x000000006E400000 +20459520      19338752  11.0.10586.71        C:\Windows\SysWOW64\mshtml.dll 
  0x0000000071E00000 +114688           99328  10.0.10586.0         C:\WINDOWS\SysWOW64\srpapi.dll 
  0x0000000071520000 +208896          192000  10.0.10586.0         C:\WINDOWS\SysWOW64\mlang.dll 
  0x000000006E280000 +1552384        1526272  11.0.10586.0         C:\WINDOWS\SysWOW64\ieapfltr.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x0000000071B10000 +86016            82096  10.0.10586.0         C:\Windows\SysWOW64\devenum.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\setupapi.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x0000000071510000 +36864            28936  10.0.10586.0         C:\WINDOWS\SysWOW64\msdmo.dll 
  0x00000000733C0000 +32768            13312  10.0.10586.71        C:\Windows\SysWOW64\rasadhlp.dll 
  0x0000000071490000 +348160          339344  10.0.10586.0         C:\WINDOWS\SysWOW64\MMDevApi.dll 
  0x000000006D040000 +548864          527360  10.0.10586.0         C:\WINDOWS\SysWOW64\dsound.dll 
  0x0000000071250000 +229376          205824  10.0.10586.0         C:\WINDOWS\SysWOW64\wdmaud.drv 
  0x00000000714F0000 +36864            28416  10.0.10586.0         C:\WINDOWS\SysWOW64\AVRT.dll 
  0x0000000071500000 +28672            19648  10.0.10586.0         C:\WINDOWS\SysWOW64\ksuser.dll 
  0x000000006E210000 +425984          405568  10.0.10586.71        C:\WINDOWS\SysWOW64\AUDIOSES.DLL 
  0x0000000071050000 +819200          820704  10.0.10586.0         C:\WINDOWS\SysWOW64\wintypes.dll 
  0x0000000071480000 +36864            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\msacm32.drv 
  0x0000000071230000 +98304            90912  10.0.10586.0         C:\WINDOWS\SysWOW64\MSACM32.dll 
  0x0000000071470000 +32768            18944  10.0.10586.0         C:\WINDOWS\SysWOW64\midimap.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\WININET.dll 
  0x0000000071220000 +57344            36864  10.0.10586.0         C:\WINDOWS\SysWOW64\msimtf.dll 
  0x000000006DD80000 +4775936        4759040  10.0.10586.71        C:\WINDOWS\SysWOW64\d2d1.dll 
  0x000000006DB80000 +2035712        1987072  10.0.10586.0         C:\WINDOWS\SysWOW64\DWrite.dll 
  0x000000006D960000 +2195456        2195128  10.0.10586.0         C:\WINDOWS\SysWOW64\d3d10warp.dll 
  0x00000000733D0000 +290816          269824  10.0.10586.0         C:\WINDOWS\SysWOW64\fwpuclnt.dll 
  0x000000006D8F0000 +409600          389120  10.0.10586.63        C:\WINDOWS\SysWOW64\schannel.dll 
  0x0000000071210000 +65536            50176  10.0.10586.0         C:\WINDOWS\SysWOW64\mskeyprotect.dll 
  0x0000000070D40000 +131072          122944  10.0.10586.0         C:\WINDOWS\SysWOW64\ncrypt.dll 
  0x000000006D830000 +180224          176624  10.0.10586.0         C:\WINDOWS\SysWOW64\NTASN1.dll 
  0x000000006D810000 +106496           97088  10.0.10586.0         C:\WINDOWS\SysWOW64\ncryptsslp.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x000000005A820000 +434176          416256  10.0.10586.0         C:\WINDOWS\SysWOW64\hnetcfg.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x000000005A800000 +98304            82432  3.5.2284.0           C:\WINDOWS\SysWOW64\ATL.DLL 
  0x000000005A7E0000 +94208            84832  10.0.10586.35        C:\WINDOWS\SysWOW64\NetSetupApi.dll 
  0x0000000072800000 +36864            20992  10.0.10586.0         C:\WINDOWS\SysWOW64\npmproxy.dll 
 
SkypeHost.exe [32bit] 
PID: 5744, Threads: 15, Owner: M?jPC\Pepík 
MEM - WrkSet: 3804 K (Peak: 12560 K), CommitSize: 4484 K, PageFaults: 7970 
TIME - Start 29.01.2016 12:19:37, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 164496 (5), Write: 24 (1), Other: 2736 (851) 
CmdLine: "C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer 
Handles: 258 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:  28 	(Thread) 
  Type: 12, Cnt:  62 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt:   7 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  11 	() 
  Type: 31, Cnt:   6 	(File) 
  Type: 36, Cnt:   2 	(Section) 
  Type: 39, Cnt:  12 	(Key) 
  Type: 40, Cnt:  12 	(ALPC Port) 
  Type: 43, Cnt:  96 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000C60000 +159744          144384  10.1.2123.10         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000C60000 +159744          144384  10.1.2123.10         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000072230000 +598016          581632  10.0.10586.0         C:\WINDOWS\SysWOW64\apphelp.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000071DD0000 +163840          141312  10.1.2123.10         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 
  0x0000000071D00000 +835584          817080  12.0.30501.0         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\msvcr120_app.dll 
  0x0000000071C80000 +462848          447416  12.0.30501.0         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\msvcp120_app.dll 
  0x0000000071C40000 +245760          237496  12.0.30501.0         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\vccorlib120_app.DLL 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000071B70000 +839680          836208  10.0.10586.0         C:\Windows\SysWOW64\twinapi.appcore.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000071050000 +819200          820704  10.0.10586.0         C:\Windows\SysWOW64\WinTypes.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\user32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000070E30000 +2211840        2193408  10.0.10586.0         C:\Windows\SysWOW64\ActXPrxy.dll 
  0x0000000070D60000 +851968          846080  10.0.10586.0         C:\WINDOWS\SysWOW64\mrmcorer.dll 
  0x0000000070D10000 +167936          144896  10.0.10586.0         C:\Windows\SysWOW64\biwinrt.dll 
  0x0000000070830000 +540672          521728  10.0.10586.0         C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 
  0x00000000674D0000 +491520          469504  10.0.10586.0         C:\Windows\SysWOW64\AppContracts.dll 
  0x00000000671B0000 +61440            46592  10.0.10586.0         C:\Windows\SysWOW64\Windows.Shell.ServiceHostBuilder.dll 
  0x0000000067560000 +552960          523264  10.0.10586.0         C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll 
  0x0000000065790000 +22515712      22330368  10.1.2123.10         C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000069360000 +929792          925064  12.0.10586.35        C:\WINDOWS\SysWOW64\MFPlat.DLL 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x0000000067450000 +462848          462760  12.0.10586.35        C:\WINDOWS\SysWOW64\MFReadWrite.dll 
  0x0000000071490000 +348160          339344  10.0.10586.0         C:\WINDOWS\SysWOW64\MMDevAPI.DLL 
  0x00000000718F0000 +2203648        2185840  10.0.10586.17        C:\WINDOWS\SysWOW64\d3d11.dll 
  0x0000000066D70000 +684032          637952  10.0.10586.0         C:\WINDOWS\SysWOW64\Windows.Networking.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\PROPSYS.dll 
  0x0000000071860000 +536576          525288  10.0.10586.0         C:\WINDOWS\SysWOW64\dxgi.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000069330000 +147456          128648  12.0.10586.0         C:\WINDOWS\SysWOW64\RTWorkQ.DLL 
  0x0000000067420000 +159744          139264  10.0.10586.0         C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000065770000 +69632            58368  10.0.10586.0         C:\Windows\SysWOW64\threadpoolwinrt.dll 
 
tv_w32.exe [32bit] 
PID: 6048, Threads: 1, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 6092 K (Peak: 6620 K), CommitSize: 1220 K, PageFaults: 1831 
TIME - Start 29.01.2016 12:19:39, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 459 (3), Other: 180 (253) 
CmdLine: "E:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks  --log E:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log   
Handles: 142 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   1 	(Thread) 
  Type: 12, Cnt:  24 	(Event) 
  Type: 13, Cnt:  11 	(Mutant) 
  Type: 15, Cnt:   6 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:  10 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:   5 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:  57 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000001120000 +245760          231184  11.0.53254.0         E:\Program Files (x86)\TeamViewer\tv_w32.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000001120000 +245760          231184  11.0.53254.0         E:\Program Files (x86)\TeamViewer\tv_w32.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\setupapi.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\CFGMGR32.dll 
  0x0000000070690000 +503808          486400  6.0.5054.0           C:\WINDOWS\SysWOW64\newdev.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\UxTheme.dll 
  0x0000000071B40000 +61440            47104  10.0.10586.0         C:\WINDOWS\SysWOW64\devrtl.DLL 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000070580000 +1101824        1083904  10.0.10586.0         C:\WINDOWS\SysWOW64\printui.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000072740000 +421888          400896  10.0.10586.11        C:\WINDOWS\SysWOW64\WINSPOOL.DRV 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000070550000 +192512          175104  10.0.10586.0         C:\WINDOWS\SysWOW64\puiapi.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\Comctl32.dll 
  0x00000000707E0000 +266240          250640  11.0.53254.0         E:\Program Files (x86)\TeamViewer\tv_w32.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x00000000704B0000 +598016          585568  5.82.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_811bc0006c44242b\COMCTL32.dll 
 
tv_x64.exe 
PID: 6064, Threads: 1, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 5796 K (Peak: 6404 K), CommitSize: 1320 K, PageFaults: 1770 
TIME - Start 29.01.2016 12:19:39, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 251 (2), Other: 152 (231) 
CmdLine: "E:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks  --log E:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log   
Handles: 134 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   1 	(Thread) 
  Type: 12, Cnt:  22 	(Event) 
  Type: 13, Cnt:  11 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:   9 	(File) 
  Type: 36, Cnt:   1 	(Section) 
  Type: 39, Cnt:   3 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:  58 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6FDE40000 +282624          263952  11.0.53254.0         E:\Program Files (x86)\TeamViewer\tv_x64.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\setupapi.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\CFGMGR32.dll 
  0x00007FFE598C0000 +532480          512512  6.0.5054.0           C:\WINDOWS\system32\newdev.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\SYSTEM32\UxTheme.dll 
  0x00007FFE6FA00000 +77824            57344  10.0.10586.0         C:\WINDOWS\SYSTEM32\devrtl.DLL 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE59790000 +1216512        1196032  10.0.10586.0         C:\WINDOWS\system32\printui.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE6AD20000 +540672          517632  10.0.10586.11        C:\WINDOWS\SYSTEM32\WINSPOOL.DRV 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE6A7C0000 +217088          201728  10.0.10586.0         C:\WINDOWS\SYSTEM32\puiapi.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\Comctl32.dll 
  0x00007FFE6A4D0000 +299008          274192  11.0.53254.0         E:\Program Files (x86)\TeamViewer\tv_x64.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE64470000 +696320          679776  5.82.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_396e892957c7fb25\COMCTL32.dll 
 
EncoderServer.exe [32bit] 
PID: 6392, Threads: 2, Owner: M?jPC\Pepík 
MEM - WrkSet: 1204 K (Peak: 136924 K), CommitSize: 1712 K, PageFaults: 35137 
TIME - Start 29.01.2016 12:19:41, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 340546 (311), Write: 0 (0), Other: 534 (1738) 
CmdLine: "E:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe" /i 
Handles: 82 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   1 	(Thread) 
  Type: 12, Cnt:  18 	(Event) 
  Type: 15, Cnt:   2 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   5 	() 
  Type: 31, Cnt:   8 	(File) 
  Type: 36, Cnt:   2 	(Section) 
  Type: 39, Cnt:   6 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  23 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000001360000 +36864            26112  2.1.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000001360000 +36864            26112  2.1.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000072300000 +3788800        3766600  9.0.30729.6161       C:\WINDOWS\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x00000000704B0000 +598016          585568  5.82.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_811bc0006c44242b\COMCTL32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\UxTheme.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000000B00000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
 
RTSSHooksLoader64.exe 
PID: 6440, Threads: 1, Owner: M?jPC\Pepík 
MEM - WrkSet: 1128 K (Peak: 8276 K), CommitSize: 1268 K, PageFaults: 5555 
TIME - Start 29.01.2016 12:19:41, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 4454391 (330), Write: 8 (1), Other: 522 (1841) 
CmdLine: "E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe" /i 
Handles: 71 
  Type:  3, Cnt:   2 	(Directory) 
  Type: 12, Cnt:  12 	(Event) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   5 	() 
  Type: 31, Cnt:  11 	(File) 
  Type: 39, Cnt:   4 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  24 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF60FB20000 +110592           88576  1.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE64470000 +696320          679776  5.82.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_396e892957c7fb25\COMCTL32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x0000000075D20000 +5128192        5086536  9.0.30729.6161       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_044aad0bab1eb146\mfc90.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE6CD70000 +28672             8704  10.0.10586.0         C:\WINDOWS\SYSTEM32\MSIMG32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\UxTheme.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\system32\dwmapi.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
 
RtkNGUI64.exe 
PID: 6676, Threads: 7, Owner: M?jPC\Pepík 
MEM - WrkSet: 11620 K (Peak: 12396 K), CommitSize: 4288 K, PageFaults: 17382 
TIME - Start 29.01.2016 12:19:44, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 329322 (210), Write: 0 (0), Other: 29282 (4082) 
CmdLine: "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s 
Handles: 346 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:  13 	(Thread) 
  Type: 12, Cnt: 136 	(Event) 
  Type: 13, Cnt:  11 	(Mutant) 
  Type: 15, Cnt:   4 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   6 	() 
  Type: 31, Cnt:  38 	(File) 
  Type: 36, Cnt:   4 	(Section) 
  Type: 39, Cnt:  28 	(Key) 
  Type: 40, Cnt:   4 	(ALPC Port) 
  Type: 43, Cnt:  89 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000140000000 +7671808        7637208  1.0.402.1            C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\CFGMGR32.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\SYSTEM32\dwmapi.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x00007FFE76EB0000 +1093632        1063936  10.0.10586.0         C:\WINDOWS\system32\COMDLG32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE6CD70000 +28672             8704  10.0.10586.0         C:\WINDOWS\SYSTEM32\MSIMG32.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE59350000 +638976          617984  10.0.10586.0         C:\WINDOWS\SYSTEM32\DSOUND.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\COMCTL32.dll 
  0x00007FFE6AD20000 +540672          517632  10.0.10586.11        C:\WINDOWS\SYSTEM32\WINSPOOL.DRV 
  0x00007FFE59A10000 +1736704        1717248  10.0.10586.20        C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_db007f1392e69ef4\gdiplus.dll 
  0x00007FFE6CE00000 +49152            27136  10.0.10586.0         C:\WINDOWS\SYSTEM32\DAVHLPR.DLL 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\SYSTEM32\fwbase.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\SYSTEM32\DEVOBJ.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE6F480000 +458752          440120  10.0.10586.0         C:\WINDOWS\System32\MMDevApi.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\System32\PROPSYS.dll 
  0x00007FFE6A2F0000 +557056          536256  10.0.10586.71        C:\WINDOWS\SYSTEM32\AUDIOSES.DLL 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x0000000002B70000 +163840          149608  1.0.0.2              C:\WINDOWS\system32\RtkCfg64.dll 
  0x00000000765D0000 +3338240        2808024  11.0.6000.383        C:\WINDOWS\system32\RltkAPO64.dll 
  0x00007FFE697C0000 +536576          516544  10.0.10586.11        C:\WINDOWS\system32\audioeng.dll 
  0x00007FFE72510000 +45056            32592  10.0.10586.0         C:\WINDOWS\system32\AVRT.dll 
  0x0000000002A60000 +1056768        1024728  1.0.0.81             C:\WINDOWS\system32\RtkApi64.dll 
 
LWEMon.exe 
PID: 6812, Threads: 3, Owner: M?jPC\Pepík 
MEM - WrkSet: 11624 K (Peak: 12356 K), CommitSize: 4104 K, PageFaults: 866798 
TIME - Start 29.01.2016 12:19:45, KernelTime: 00:00:03, UserTime: 00:00:00 
IO - Read: 455063 (711), Write: 0 (0), Other: 76666 (26887) 
CmdLine: "C:\Program Files\Logitech\Gaming Software\LWEMon.exe" /noui 
Handles: 225 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   3 	(Thread) 
  Type: 12, Cnt:  28 	(Event) 
  Type: 13, Cnt:   9 	(Mutant) 
  Type: 15, Cnt:   2 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:  17 	(File) 
  Type: 36, Cnt:   5 	(Section) 
  Type: 39, Cnt:  76 	(Key) 
  Type: 40, Cnt:   3 	(ALPC Port) 
  Type: 43, Cnt:  58 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000140000000 +204800          190536  5.10.127.0           C:\Program Files\Logitech\Gaming Software\LWEMon.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x0000000180000000 +266240          236616  5.10.127.0           C:\Program Files\Logitech\Gaming Software\LWUtils.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00000000001A0000 +372736          360008  5.10.127.0           C:\Program Files\Logitech\Gaming Software\LWGStore.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x0000000075B80000 +1683456        1655296  8.0.50727.4053       C:\WINDOWS\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.4053_none_8444db7d32915e4c\MFC80U.DLL 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x0000000075AB0000 +823296          796672  8.0.50727.9193       C:\WINDOWS\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9193_none_88e4514b2faac6c7\MSVCR80.dll 
  0x00007FFE59A10000 +1736704        1717248  10.0.10586.20        C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_db007f1392e69ef4\gdiplus.dll 
  0x00000000759A0000 +1085440        1062400  8.0.50727.9193       C:\WINDOWS\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9193_none_88e4514b2faac6c7\MSVCP80.dll 
  0x00007FFE6AE40000 +184320          165376  10.0.10586.0         C:\WINDOWS\SYSTEM32\DINPUT.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x00007FFE750C0000 +49152            34816  10.0.10586.0         C:\WINDOWS\SYSTEM32\HID.DLL 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x00000000022D0000 +229376          220744  5.10.127.0           C:\Program Files\Common Files\Logitech\Gaming Software\LWComCtl.dll 
  0x0000000002670000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x0000000002810000 +872448          873032  5.10.127.0           C:\Program Files\Logitech\Gaming Software\LWPrfRC.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x0000000002C30000 +53248            41032  5.10.127.0           C:\Program Files\Logitech\Gaming Software\W2kDAPI.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\system32\DEVOBJ.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\Wtsapi32.dll 
  0x00007FFE79A40000 +454656          442720  10.0.10586.0         C:\WINDOWS\system32\coml2.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x0000000002C70000 +348160          328776  5.9.129.0            C:\WINDOWS\System32\WmJoyFrc.dll 
 
cnext.exe 
PID: 7044, Threads: 13, Owner: M?jPC\Pepík 
MEM - WrkSet: 28524 K (Peak: 111784 K), CommitSize: 103400 K, PageFaults: 53304 
TIME - Start 29.01.2016 12:19:46, KernelTime: 00:00:03, UserTime: 00:00:01 
IO - Read: 3268172 (1152), Write: 15687 (2), Other: 109792 (14467) 
CmdLine: "C:\Program Files\AMD\CNext\CNext\cnext.exe" atlogon 
Handles: 412 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:  19 	(Thread) 
  Type: 12, Cnt: 101 	(Event) 
  Type: 13, Cnt:  13 	(Mutant) 
  Type: 15, Cnt:  30 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:  11 	() 
  Type: 31, Cnt:  12 	(File) 
  Type: 36, Cnt:  22 	(Section) 
  Type: 39, Cnt:  70 	(Key) 
  Type: 40, Cnt:  11 	(ALPC Port) 
  Type: 43, Cnt: 108 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF670E40000 +4886528        4867784  10.1.1.1522          C:\Program Files\AMD\CNext\CNext\cnext.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x0000000075450000 +5525504        5496320  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\SYSTEM32\dwmapi.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\WTSAPI32.dll 
  0x00007FFE722A0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SYSTEM32\VERSION.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\WININET.dll 
  0x00007FFE590F0000 +2162688        2144512  10.0.10586.0         C:\WINDOWS\SYSTEM32\d3d9.dll 
  0x00007FFE6A2C0000 +143360          136360  10.0.10586.0         C:\WINDOWS\SYSTEM32\dxva2.dll 
  0x00007FFE73520000 +663552          651840  10.0.10586.0         C:\WINDOWS\SYSTEM32\dxgi.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE735D0000 +2785280        2772584  10.0.10586.17        C:\WINDOWS\SYSTEM32\d3d11.dll 
  0x00007FFE590A0000 +315392          298496  10.0.10586.0         C:\WINDOWS\SYSTEM32\pdh.dll 
  0x00007FFE726A0000 +819200          794112  10.0.10586.71        C:\WINDOWS\SYSTEM32\WINHTTP.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\WINDOWS\SYSTEM32\urlmon.dll 
  0x00007FFE58DD0000 +2945024        2924544  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 
  0x0000000074F10000 +5464064        5444608  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 
  0x00007FFE58830000 +5844992        5804544  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 
  0x00007FFE587E0000 +294912          277504  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 
  0x0000000074BC0000 +208896          193024  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 
  0x0000000074C00000 +3207168        3187712  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 
  0x00007FFE586F0000 +978944          963232  12.0.21005.1         C:\WINDOWS\SYSTEM32\MSVCR120.dll 
  0x00007FFE58640000 +679936          660128  12.0.21005.1         C:\WINDOWS\SYSTEM32\MSVCP120.dll 
  0x00007FFE6FF20000 +110592          101776  10.0.10586.0         C:\WINDOWS\SYSTEM32\MPR.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x0000000074AB0000 +1085440        1061376  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE74AF0000 +696320          686984  10.0.10586.0         C:\WINDOWS\SYSTEM32\DNSAPI.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.DLL 
  0x00007FFE584F0000 +1343488        1281552  7.16.10.1301         C:\WINDOWS\SYSTEM32\atiadlxx.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE77FF0000 +32768            18656  10.0.10586.0         C:\WINDOWS\system32\PSAPI.DLL 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\SYSTEM32\USERENV.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\SYSTEM32\PROPSYS.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\SYSTEM32\DEVOBJ.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE60E20000 +53248            31232  10.0.10586.0         C:\WINDOWS\SYSTEM32\LINKINFO.dll 
  0x00007FFE6DC10000 +2572288        2555744  6.10.10586.0         C:\WINDOWS\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22\comctl32.dll 
  0x00007FFE748C0000 +495616          479744  10.0.10586.0         C:\WINDOWS\SYSTEM32\apphelp.dll 
  0x00007FFE74BF0000 +1048576        1040792  10.0.10586.0         C:\Windows\System32\twinapi.appcore.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\Windows\System32\bcrypt.dll 
  0x00007FFE547F0000 +1245184        1212416  5.5.0.0              C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll 
  0x00007FFE6DB60000 +49152            28160  10.0.10586.0         C:\WINDOWS\SYSTEM32\Secur32.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\SYSTEM32\SSPICLI.DLL 
  0x00007FFE5B5F0000 +253952          233472  10.0.10586.0         C:\WINDOWS\SYSTEM32\MLANG.dll 
  0x00007FFE739C0000 +36864            14336  0.0.0.0              C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 
  0x00007FFE55600000 +753664          739840  0.0.0.0              C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 
  0x00007FFE6FB20000 +36864            14336  0.0.0.0              C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 
  0x00007FFE5AA90000 +86016            71168  0.0.0.0              C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 
  0x00007FFE5AA80000 +32768            11776  0.0.0.0              C:\Program Files\AMD\CNext\CNext\libEGL.dll 
  0x00007FFE54600000 +2031616        2013696  0.0.0.0              C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 
  0x00007FFE541F0000 +4210688        4173928  6.3.9600.16384       C:\Program Files\AMD\CNext\CNext\d3dcompiler_47.dll 
  0x00007FFE722B0000 +1503232        1519232  8.17.10.1429         C:\WINDOWS\SYSTEM32\aticfx64.dll 
  0x00007FFE72240000 +163840          162784  8.14.1.6489          C:\WINDOWS\SYSTEM32\atiuxp64.dll 
  0x00007FFE70830000 +13139968      13313544  8.17.10.644          C:\WINDOWS\SYSTEM32\atidxx64.dll 
  0x00007FFE62760000 +303104          279040  10.0.10586.0         C:\WINDOWS\system32\dataexchange.dll 
  0x00007FFE74530000 +929792          911648  10.0.10586.11        C:\WINDOWS\system32\dcomp.dll 
  0x00007FFE555E0000 +69632            49664  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qdds.dll 
  0x00007FFE5AA70000 +53248            29696  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll 
  0x00007FFE58180000 +61440            37376  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll 
  0x00007FFE57660000 +53248            30208  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll 
  0x00007FFE54170000 +503808          459776  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qjp2.dll 
  0x00007FFE54130000 +262144          236544  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll 
  0x00007FFE540E0000 +294912          275456  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qmng.dll 
  0x00007FFE555D0000 +49152            23552  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll 
  0x0000000074A50000 +331776          310784  5.5.0.0              C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll 
  0x00007FFE540D0000 +49152            22528  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll 
  0x00007FFE54070000 +372736          351744  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qtiff.dll 
  0x00007FFE54060000 +40960            21504  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll 
  0x00007FFE53FF0000 +405504          374784  5.5.0.0              C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll 
  0x00007FFE6B3E0000 +327680          305152  10.0.10586.0         C:\WINDOWS\SYSTEM32\edputil.dll 
 
Skype.exe [32bit] 
PID: 5668, Threads: 69, Owner: M?jPC\Pepík 
MEM - WrkSet: 129964 K (Peak: 132284 K), CommitSize: 143424 K, PageFaults: 849496 
TIME - Start 29.01.2016 12:19:47, KernelTime: 00:01:33, UserTime: 00:01:12 
IO - Read: 100809741 (36040), Write: 26402670 (10158), Other: 8576464 (53204) 
CmdLine: "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun 
Handles: 1707 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:  99 	(Thread) 
  Type: 12, Cnt: 748 	(Event) 
  Type: 13, Cnt:  67 	(Mutant) 
  Type: 15, Cnt:  56 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:  12 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   6 	(TpWorkerFactory) 
  Type: 29, Cnt:  11 	(IoCompletion) 
  Type: 30, Cnt:  33 	() 
  Type: 31, Cnt: 139 	(File) 
  Type: 36, Cnt:  68 	(Section) 
  Type: 39, Cnt:  97 	(Key) 
  Type: 40, Cnt:  17 	(ALPC Port) 
  Type: 43, Cnt: 344 	(?) 
  Type: 47, Cnt:   1 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +50483200      50385536  7.17.85.105          C:\Program Files (x86)\Skype\Phone\Skype.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +50483200      50385536  7.17.85.105          C:\Program Files (x86)\Skype\Phone\Skype.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\oleaut32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\user32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\wintrust.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\shell32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073F10000 +991232          965120  10.0.10586.0         C:\WINDOWS\SysWOW64\comdlg32.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\msimg32.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\version.dll 
  0x000000006D480000 +102400           88576  10.0.10586.0         C:\WINDOWS\SysWOW64\olepro32.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\comctl32.dll 
  0x0000000072740000 +421888          400896  10.0.10586.11        C:\WINDOWS\SysWOW64\winspool.drv 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\WINDOWS\SysWOW64\URLMON.DLL 
  0x00000000721D0000 +344064          322560  7.2.10586.0          C:\WINDOWS\SysWOW64\oleacc.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\wininet.dll 
  0x00000000707D0000 +24576             9216  10.0.10586.0         C:\WINDOWS\SysWOW64\SHFolder.dll 
  0x0000000071690000 +1880064        1865584  10.0.10586.0         C:\WINDOWS\SysWOW64\d3d9.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\winmm.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\WINDOWS\SysWOW64\iertutil.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x00000000722D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x00000000726C0000 +45056            22528  10.0.10586.0         C:\WINDOWS\SysWOW64\DAVHLPR.DLL 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x000000006D420000 +274432          261632  10.0.10586.0         C:\WINDOWS\SysWOW64\pdh.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\PSAPI.DLL 
  0x0000000071230000 +98304            90912  10.0.10586.0         C:\WINDOWS\SysWOW64\MSACM32.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x00000000729D0000 +40960            34088  10.0.10586.0         C:\WINDOWS\SysWOW64\NETUTILS.DLL 
  0x00000000729E0000 +65536            56320  10.0.10586.0         C:\WINDOWS\SysWOW64\wkscli.dll 
  0x00000000729C0000 +61440            43008  10.0.10586.0         C:\WINDOWS\SysWOW64\cscapi.dll 
  0x00000000714F0000 +36864            28416  10.0.10586.0         C:\WINDOWS\SysWOW64\avrt.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000070330000 +1519616        1522152  10.0.10586.0         C:\WINDOWS\SysWOW64\windowscodecs.dll 
  0x000000006D390000 +577536          553472  10.0.10586.0         C:\WINDOWS\SysWOW64\cryptui.dll 
  0x000000006D470000 +32768            13312  10.0.10586.0         C:\WINDOWS\SysWOW64\DPAPI.DLL 
  0x0000000070710000 +106496           90624  1.0.2536.0           C:\WINDOWS\SysWOW64\mapi32.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\wtsapi32.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000071E20000 +528384          521704  10.0.10586.0         C:\WINDOWS\SysWOW64\sxs.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\propsys.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x0000000071B50000 +73728            52736  10.0.10586.0         C:\WINDOWS\SysWOW64\ondemandconnroutehelper.dll 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x0000000070730000 +634880          613888  10.0.10586.71        C:\WINDOWS\SysWOW64\winhttp.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x00000000733C0000 +32768            13312  10.0.10586.71        C:\Windows\SysWOW64\rasadhlp.dll 
  0x00000000733D0000 +290816          269824  10.0.10586.0         C:\WINDOWS\SysWOW64\fwpuclnt.dll 
  0x000000006D340000 +315392          306840  10.0.10586.0         C:\WINDOWS\SysWOW64\wlanapi.dll 
  0x0000000071490000 +348160          339344  10.0.10586.0         C:\WINDOWS\SysWOW64\MMDevApi.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000071510000 +36864            28936  10.0.10586.0         C:\WINDOWS\SysWOW64\msdmo.dll 
  0x000000006D310000 +135168          129664  7.0.0.415            C:\Program Files (x86)\Skype\Updater\Updater.dll 
  0x000000006CC00000 +4431872        4412928  10.0.10586.0         C:\WINDOWS\SysWOW64\explorerframe.dll 
  0x000000006D2C0000 +299008          279040  10.0.10586.0         C:\WINDOWS\SysWOW64\edputil.dll 
  0x000000006D8F0000 +409600          389120  10.0.10586.63        C:\WINDOWS\SysWOW64\schannel.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
  0x000000006D2B0000 +45056            25088  10.0.10586.0         C:\WINDOWS\SysWOW64\LINKINFO.dll 
  0x000000006D1E0000 +823296          802816  10.0.10586.0         C:\WINDOWS\SysWOW64\ntshrui.dll 
  0x000000006D1C0000 +114688           73872  10.0.10586.0         C:\WINDOWS\SysWOW64\srvcli.dll 
  0x000000006CAD0000 +1241088        1249664  8.17.10.1429         C:\WINDOWS\SysWOW64\aticfx32.dll 
  0x000000006D1A0000 +114688          112392  8.14.1.6489          C:\WINDOWS\SysWOW64\atiu9pag.dll 
  0x000000006C210000 +9113600        9158496  9.14.10.1162         C:\WINDOWS\SysWOW64\atiumdag.dll 
  0x000000006BA50000 +8122368        8168856  8.14.10.533          C:\WINDOWS\SysWOW64\atiumdva.dll 
  0x000000006D100000 +602112          581632  10.0.10586.0         C:\Windows\SysWOW64\twinapi.dll 
  0x00000000727B0000 +278528          260360  10.0.10586.0         C:\WINDOWS\SysWOW64\WINSTA.dll 
  0x0000000071F60000 +266240          248832  10.0.10586.0         C:\WINDOWS\SysWOW64\dataexchange.dll 
  0x00000000718F0000 +2203648        2185840  10.0.10586.17        C:\WINDOWS\SysWOW64\d3d11.dll 
  0x0000000071EB0000 +684032          675064  10.0.10586.11        C:\WINDOWS\SysWOW64\dcomp.dll 
  0x0000000071860000 +536576          525288  10.0.10586.0         C:\WINDOWS\SysWOW64\dxgi.dll 
  0x0000000071B70000 +839680          836208  10.0.10586.0         C:\WINDOWS\SysWOW64\twinapi.appcore.dll 
  0x0000000071210000 +65536            50176  10.0.10586.0         C:\WINDOWS\SysWOW64\mskeyprotect.dll 
  0x0000000070D40000 +131072          122944  10.0.10586.0         C:\WINDOWS\SysWOW64\ncrypt.dll 
  0x000000006D830000 +180224          176624  10.0.10586.0         C:\WINDOWS\SysWOW64\NTASN1.dll 
  0x000000006D0D0000 +151552          136704  10.0.10586.0         C:\Windows\SysWOW64\cryptnet.dll 
  0x000000006A6A0000 +20619264      19625464  20.0.0.272           C:\Windows\SysWOW64\Macromed\Flash\Flash.ocx 
  0x000000006A580000 +1163264        1139200  7.2.10586.17         C:\WINDOWS\SysWOW64\UIAutomationCore.DLL 
  0x000000006D040000 +548864          527360  10.0.10586.0         C:\WINDOWS\SysWOW64\DSOUND.dll 
  0x000000006A500000 +520192          501760  10.0.10586.0         C:\WINDOWS\SysWOW64\mscms.dll 
  0x000000006A4C0000 +221184          172032  10.0.10586.0         C:\WINDOWS\SysWOW64\DINPUT8.dll 
  0x000000006D810000 +106496           97088  10.0.10586.0         C:\WINDOWS\SysWOW64\ncryptsslp.dll 
  0x000000006A290000 +2293760        2263720  6.0.8948.320         C:\Program Files (x86)\Skype\Phone\RtmPal.dll 
  0x000000006D790000 +462848          455328  12.0.21005.1         C:\WINDOWS\SysWOW64\MSVCP120.dll 
  0x0000000071B30000 +40960            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\Secur32.dll 
  0x000000006D6A0000 +974848          970912  12.0.21005.1         C:\WINDOWS\SysWOW64\MSVCR120.dll 
  0x0000000072880000 +1306624        1196544  10.0.10586.0         C:\WINDOWS\SysWOW64\dbghelp.dll 
  0x0000000072EF0000 +675840          653312  10.0.10586.71        C:\WINDOWS\SysWOW64\RASAPI32.dll 
  0x0000000072A20000 +143360          123392  10.0.10586.0         C:\WINDOWS\SysWOW64\rasman.dll 
  0x000000006A280000 +53248            39936  10.0.10586.0         C:\WINDOWS\SysWOW64\atlthunk.dll 
  0x0000000069F40000 +3387392        3290808  6.0.8948.320         C:\Program Files (x86)\Skype\Phone\RtmCodecs.dll 
  0x0000000069F20000 +122880          113656  10.0.10586.0         C:\WINDOWS\SysWOW64\dxva2.dll 
  0x0000000069E50000 +794624          791760  6.0.8948.320         C:\Program Files (x86)\Skype\Phone\RtmMediaManager.dll 
  0x0000000069D60000 +933888          933056  0.0.0.0              C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll 
  0x000000006F790000 +12165120      12126208  11.0.10586.71        C:\WINDOWS\SysWOW64\ieframe.dll 
  0x0000000069590000 +8179712        8078520  6.0.8948.320         C:\Program Files (x86)\Skype\Phone\RTMPLTFM.dll 
  0x0000000069490000 +532480          516608  7.0.10586.0          C:\WINDOWS\SysWOW64\StructuredQuery.dll 
  0x0000000069450000 +221184          195584  10.0.10586.0         C:\WINDOWS\SysWOW64\MSWB7.dll 
  0x0000000071050000 +819200          820704  10.0.10586.0         C:\Windows\SysWOW64\WinTypes.dll 
  0x0000000069360000 +929792          925064  12.0.10586.35        C:\WINDOWS\SysWOW64\MFPlat.dll 
  0x0000000069330000 +147456          128648  12.0.10586.0         C:\WINDOWS\SysWOW64\RTWorkQ.DLL 
  0x00000000692B0000 +516096          511320  12.0.10586.11        C:\WINDOWS\SysWOW64\MF.dll 
  0x0000000069090000 +2170880        2180128  12.0.10586.63        C:\WINDOWS\SysWOW64\MFCORE.DLL 
  0x0000000071500000 +28672            19648  10.0.10586.0         C:\WINDOWS\SysWOW64\ksuser.dll 
  0x0000000068F80000 +1081344        1087712  12.0.10586.0         C:\WINDOWS\SysWOW64\mfperfhelper.dll 
  0x0000000068F50000 +143360          143080  8.14.1.6489          C:\WINDOWS\SysWOW64\atiuxpag.dll 
  0x00000000684F0000 +10862592      11011560  8.17.10.644          C:\WINDOWS\SysWOW64\atidxx32.dll 
  0x000000006E210000 +425984          405568  10.0.10586.71        C:\WINDOWS\SysWOW64\AUDIOSES.DLL 
  0x0000000068460000 +110592           90112  10.0.10586.0         C:\Windows\SysWOW64\DevDispItemProvider.dll 
  0x00000000674D0000 +491520          469504  10.0.10586.0         C:\Windows\SysWOW64\AppContracts.dll 
  0x0000000070E30000 +2211840        2193408  10.0.10586.0         C:\Windows\SysWOW64\ActXPrxy.dll 
  0x000000006E400000 +20459520      19338752  11.0.10586.71        C:\Windows\SysWOW64\mshtml.dll 
  0x0000000066D10000 +356352          336384  10.0.10586.0         C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 
  0x0000000071E00000 +114688           99328  10.0.10586.0         C:\WINDOWS\SysWOW64\srpapi.dll 
  0x0000000071520000 +208896          192000  10.0.10586.0         C:\WINDOWS\SysWOW64\MLANG.dll 
  0x000000006E280000 +1552384        1526272  11.0.10586.0         C:\WINDOWS\SysWOW64\ieapfltr.dll 
  0x0000000066E20000 +3702784        3667456  11.0.10586.63        C:\Windows\SysWOW64\jscript9.dll 
  0x0000000071220000 +57344            36864  10.0.10586.0         C:\WINDOWS\SysWOW64\msimtf.dll 
  0x000000006DD80000 +4775936        4759040  10.0.10586.71        C:\WINDOWS\SysWOW64\d2d1.dll 
  0x000000006DB80000 +2035712        1987072  10.0.10586.0         C:\WINDOWS\SysWOW64\DWrite.dll 
  0x000000006D960000 +2195456        2195128  10.0.10586.0         C:\WINDOWS\SysWOW64\d3d10warp.dll 
 
OneDrive.exe [32bit] 
PID: 6228, Threads: 12, Owner: M?jPC\Pepík 
MEM - WrkSet: 17992 K (Peak: 19204 K), CommitSize: 5492 K, PageFaults: 6960 
TIME - Start 29.01.2016 12:19:56, KernelTime: 00:00:01, UserTime: 00:00:00 
IO - Read: 364865 (234), Write: 163700 (1003), Other: 29884 (4094) 
CmdLine: "C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background 
Handles: 341 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:  30 	(Thread) 
  Type: 12, Cnt:  95 	(Event) 
  Type: 13, Cnt:   9 	(Mutant) 
  Type: 15, Cnt:  14 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  18 	() 
  Type: 31, Cnt:  17 	(File) 
  Type: 36, Cnt:   8 	(Section) 
  Type: 39, Cnt:  25 	(Key) 
  Type: 40, Cnt:   7 	(ALPC Port) 
  Type: 43, Cnt: 102 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000160000 +557056          551112  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000160000 +557056          551112  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\OneDrive.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000065750000 +114688          115400  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\LoggingPlatform.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000065660000 +974848          970912  12.0.21005.1         C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\MSVCR120.dll 
  0x00000000655E0000 +462848          455328  12.0.21005.1         C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\MSVCP120.dll 
  0x0000000073A90000 +32768            16384  10.0.10586.0         C:\WINDOWS\SysWOW64\WSOCK32.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x00000000653D0000 +2121728        2108096  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncClient.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\PSAPI.DLL 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\WINDOWS\SysWOW64\urlmon.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000065070000 +3506176        3448008  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\SyncEngine.DLL 
  0x0000000064FD0000 +655360          657096  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\RemoteAccess.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000064F80000 +315392          304840  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\Telemetry.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x0000000064F40000 +208896          196416  6.1.7600.16385       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\sqmapi.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000064DE0000 +1396736        1390792  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncSessions.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\UxTheme.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000064D50000 +552960          538736  10.0.10586.0         C:\WINDOWS\SysWOW64\wer.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\WININET.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\WINDOWS\SysWOW64\iertutil.dll 
  0x0000000070730000 +634880          613888  10.0.10586.71        C:\WINDOWS\SysWOW64\WINHTTP.dll 
  0x0000000064D20000 +184320          181776  10.0.10586.0         C:\WINDOWS\SysWOW64\XmlLite.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\PROPSYS.dll 
  0x0000000064CF0000 +135168          122944  10.0.10586.0         C:\WINDOWS\SysWOW64\Cabinet.dll 
  0x0000000064C90000 +385024          385216  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\WnsClientApi.dll 
  0x0000000064C70000 +126976          101888  10.0.10586.0         C:\WINDOWS\SysWOW64\loadperf.dll 
  0x0000000071B30000 +40960            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\Secur32.dll 
  0x000000006D420000 +274432          261632  10.0.10586.0         C:\WINDOWS\SysWOW64\pdh.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\MSWSOCK.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000064C10000 +344064          335248  10.0.10586.0         C:\WINDOWS\SysWOW64\faultrep.dll 
  0x0000000072880000 +1306624        1196544  10.0.10586.0         C:\WINDOWS\SysWOW64\dbghelp.dll 
  0x0000000072850000 +135168          118784  10.0.10586.0         C:\WINDOWS\SysWOW64\dbgcore.DLL 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x00000000722D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000002B20000 +2666496        2676928  17.3.6281.1202       C:\Users\Pepík\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSync.Resources.dll 
  0x0000000071520000 +208896          192000  10.0.10586.0         C:\WINDOWS\SysWOW64\mlang.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x000000006D510000 +1630208        1588224  8.110.10586.0        C:\WINDOWS\SysWOW64\msxml3.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x00000000671C0000 +2027520        2026736  6.30.10586.63        C:\Windows\SysWOW64\msxml6.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x000000006D4A0000 +425984          405504  10.0.10586.0         C:\WINDOWS\SysWOW64\webio.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x00000000733C0000 +32768            13312  10.0.10586.71        C:\Windows\SysWOW64\rasadhlp.dll 
  0x00000000733D0000 +290816          269824  10.0.10586.0         C:\WINDOWS\SysWOW64\fwpuclnt.dll 
  0x0000000070830000 +540672          521728  10.0.10586.0         C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 
 
WNDA3100v3.EXE [32bit] 
PID: 5240, Threads: 5, Owner: M?jPC\Pepík 
MEM - WrkSet: 13068 K (Peak: 18100 K), CommitSize: 7220 K, PageFaults: 2087568 
TIME - Start 29.01.2016 12:19:57, KernelTime: 00:00:33, UserTime: 00:00:07 
IO - Read: 8023170 (95937), Write: 0 (0), Other: 562 (658634) 
CmdLine: "C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE"  
Handles: 205 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:  30 	(Event) 
  Type: 13, Cnt:   7 	(Mutant) 
  Type: 15, Cnt:  10 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   7 	() 
  Type: 31, Cnt:  14 	(File) 
  Type: 36, Cnt:   8 	(Section) 
  Type: 39, Cnt:  23 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  81 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +6356992        6243040  1.0.0.10             C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +6356992        6243040  1.0.0.10             C:\Program Files (x86)\NETGEAR\WNDA3100v3\WNDA3100v3.EXE 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\CFGMGR32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000073F10000 +991232          965120  10.0.10586.0         C:\WINDOWS\SysWOW64\COMDLG32.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000010000000 +172032          122880  1.2.1.10             C:\Program Files (x86)\NETGEAR\WNDA3100v3\Ralink.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000064AD0000 +1253376        1211904  6.6.8063.0           C:\WINDOWS\SysWOW64\MFC42u.DLL 
  0x00000000704B0000 +598016          585568  5.82.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_811bc0006c44242b\COMCTL32.dll 
  0x00000000649A0000 +1241088        1206784  6.6.8063.0           C:\WINDOWS\SysWOW64\MFC42.DLL 
  0x0000000064930000 +458752          445952  7.0.10586.0          C:\WINDOWS\SysWOW64\MSVCP60.dll 
  0x0000000064890000 +626688          607744  10.0.10586.0         C:\WINDOWS\SysWOW64\ODBC32.dll 
  0x00000000726C0000 +45056            22528  10.0.10586.0         C:\WINDOWS\SysWOW64\DAVHLPR.DLL 
  0x000000006D470000 +32768            13312  10.0.10586.0         C:\WINDOWS\SysWOW64\DPAPI.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x000000006D340000 +315392          306840  10.0.10586.0         C:\WINDOWS\SysWOW64\wlanapi.dll 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000067410000 +24576             8704  10.0.10586.0         C:\WINDOWS\SysWOW64\RICHED32.DLL 
  0x0000000071180000 +528384          515072  5.31.23.1231         C:\WINDOWS\SysWOW64\RICHED20.dll 
  0x0000000071120000 +90112            77824  10.0.10586.0         C:\WINDOWS\SysWOW64\USP10.dll 
  0x0000000071140000 +200704          186368  3.10.349.0           C:\WINDOWS\SysWOW64\msls31.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000002740000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x00000000027D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x000000006D510000 +1630208        1588224  8.110.10586.0        C:\WINDOWS\SysWOW64\msxml3.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\WINDOWS\SysWOW64\urlmon.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\WINDOWS\SysWOW64\iertutil.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\wininet.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\comctl32.DLL 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
 
Monitor.EXE [32bit] 
PID: 5560, Threads: 6, Owner: M?jPC\Pepík 
MEM - WrkSet: 15856 K (Peak: 17788 K), CommitSize: 5432 K, PageFaults: 2092141 
TIME - Start 29.01.2016 12:19:57, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 17534874 (805), Write: 159159 (259), Other: 39466 (6096) 
CmdLine: "E:\Program Files (x86)\Gaming Keyboard\Monitor.EXE"  
Handles: 300 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   5 	(Thread) 
  Type: 12, Cnt:  46 	(Event) 
  Type: 13, Cnt:  25 	(Mutant) 
  Type: 15, Cnt:   6 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  12 	() 
  Type: 31, Cnt:  21 	(File) 
  Type: 36, Cnt:  12 	(Section) 
  Type: 39, Cnt:  48 	(Key) 
  Type: 40, Cnt:   9 	(ALPC Port) 
  Type: 43, Cnt:  97 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +286720          270336  1.0.0.1              E:\Program Files (x86)\Gaming Keyboard\Monitor.EXE 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +286720          270336  1.0.0.1              E:\Program Files (x86)\Gaming Keyboard\Monitor.EXE 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000073F10000 +991232          965120  10.0.10586.0         C:\WINDOWS\SysWOW64\comdlg32.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x00000000704B0000 +598016          585568  5.82.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.10586.0_none_811bc0006c44242b\COMCTL32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000072740000 +421888          400896  10.0.10586.11        C:\WINDOWS\SysWOW64\WINSPOOL.DRV 
  0x00000000726C0000 +45056            22528  10.0.10586.0         C:\WINDOWS\SysWOW64\DAVHLPR.DLL 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x00000000722D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x00000000022E0000 +61440            57344  1.0.0.1              E:\Program Files (x86)\Gaming Keyboard\lan.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\wtsapi32.dll 
  0x00000000727B0000 +278528          260360  10.0.10586.0         C:\WINDOWS\SysWOW64\WINSTA.dll 
  0x0000000002300000 +69632            61440  0.0.0.0              E:\Program Files (x86)\Gaming Keyboard\hiddriver.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x0000000067550000 +40960            25088  10.0.10586.0         C:\WINDOWS\SysWOW64\HID.DLL 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\propsys.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\comctl32.dll 
  0x0000000070330000 +1519616        1522152  10.0.10586.0         C:\WINDOWS\SysWOW64\WindowsCodecs.dll 
  0x0000000064850000 +253952          237056  10.0.10586.0         C:\Windows\SysWOW64\thumbcache.dll 
  0x0000000072230000 +598016          581632  10.0.10586.0         C:\WINDOWS\SysWOW64\apphelp.dll 
  0x00000000647E0000 +458752          442368  12.0.10586.0         C:\Windows\SysWOW64\dlnashext.dll 
  0x0000000068460000 +110592           90112  10.0.10586.0         C:\Windows\SysWOW64\DevDispItemProvider.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x0000000072810000 +212992          200192  10.0.10586.0         C:\WINDOWS\SysWOW64\netprofm.dll 
  0x0000000072800000 +36864            20992  10.0.10586.0         C:\WINDOWS\SysWOW64\npmproxy.dll 
  0x0000000064590000 +1998848        1976832  10.0.10586.0         C:\WINDOWS\SysWOW64\wpdshext.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000070E30000 +2211840        2193408  10.0.10586.0         C:\Windows\SysWOW64\ActXPrxy.dll 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\Windows\SysWOW64\urlmon.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\Windows\SysWOW64\iertutil.dll 
 
DiscSoftBusService.exe 
PID: 5960, Threads: 6, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 8660 K (Peak: 9688 K), CommitSize: 2600 K, PageFaults: 2819 
TIME - Start 29.01.2016 12:19:58, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 1190244 (124), Write: 0 (0), Other: 3784120 (15926) 
CmdLine: "F:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe" 
Handles: 175 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   1 	(Token) 
  Type:  8, Cnt:   6 	(Thread) 
  Type: 12, Cnt:  43 	(Event) 
  Type: 13, Cnt:   6 	(Mutant) 
  Type: 15, Cnt:  10 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   8 	() 
  Type: 31, Cnt:   6 	(File) 
  Type: 36, Cnt:   2 	(Section) 
  Type: 39, Cnt:  10 	(Key) 
  Type: 40, Cnt:   5 	(ALPC Port) 
  Type: 43, Cnt:  60 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000140000000 +1404928        1368408  10.2.0.114           F:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE6A620000 +77824            54064  2.2.0.0              F:\Program Files\DAEMON Tools Lite\sptdintf.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE56CA0000 +606208          580952  1.20.1.0             F:\Program Files\DAEMON Tools Lite\imgengine.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE598C0000 +532480          512512  6.0.5054.0           C:\WINDOWS\SYSTEM32\newdev.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\SYSTEM32\UxTheme.dll 
  0x00007FFE6FA00000 +77824            57344  10.0.10586.0         C:\WINDOWS\SYSTEM32\devrtl.DLL 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE74BA0000 +159744          149816  10.0.10586.0         C:\WINDOWS\SYSTEM32\DEVOBJ.dll 
  0x00007FFE76350000 +348160          341944  10.0.10586.0         C:\WINDOWS\system32\WINTRUST.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
 
OSD.exe [32bit] 
PID: 5032, Threads: 1, Owner: M?jPC\Pepík 
MEM - WrkSet: 4584 K (Peak: 4984 K), CommitSize: 1048 K, PageFaults: 1658 
TIME - Start 29.01.2016 12:19:59, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 339305 (217), Write: 0 (0), Other: 398 (1596) 
CmdLine: "E:\Program Files (x86)\Gaming Keyboard\OSD.exe"  
Handles: 73 
  Type:  3, Cnt:   4 	(Directory) 
  Type: 12, Cnt:  14 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:   2 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   5 	() 
  Type: 31, Cnt:   5 	(File) 
  Type: 39, Cnt:   7 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  21 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000400000 +159744          151552  1.0.0.0              E:\Program Files (x86)\Gaming Keyboard\OSD.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000400000 +159744          151552  1.0.0.0              E:\Program Files (x86)\Gaming Keyboard\OSD.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x00000000006B0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
WARNING: Failed to get process owner. (5) 
 
fontdrvhost.exe 
PID: 5832, Threads: 5, Owner:  
MEM - WrkSet: 3004 K (Peak: 9352 K), CommitSize: 1340 K, PageFaults: 4120 
TIME - Start 29.01.2016 12:20:33, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 70 (44) 
CmdLine: "fontdrvhost.exe" 
Handles: 35 
  Type:  3, Cnt:   1 	(Directory) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:   8 	(Event) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:   5 	() 
  Type: 31, Cnt:   1 	(File) 
  Type: 39, Cnt:   2 	(Key) 
  Type: 40, Cnt:   1 	(ALPC Port) 
  Type: 43, Cnt:   2 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF7C4450000 +643072          630632  10.0.10586.3         C:\WINDOWS\system32\fontdrvhost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\gdi32.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
 
svchost.exe 
PID: 4880, Threads: 2, Owner: M?jPC\Pepík 
MEM - WrkSet: 11996 K (Peak: 12756 K), CommitSize: 2164 K, PageFaults: 3549 
TIME - Start 29.01.2016 12:21:30, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 0 (0), Write: 0 (0), Other: 1250 (726) 
CmdLine: C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup 
Handles: 177 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   1 	(Thread) 
  Type: 12, Cnt:  39 	(Event) 
  Type: 13, Cnt:   2 	(Mutant) 
  Type: 15, Cnt:   6 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   2 	(IoCompletion) 
  Type: 30, Cnt:  15 	() 
  Type: 31, Cnt:   7 	(File) 
  Type: 36, Cnt:   3 	(Section) 
  Type: 39, Cnt:  14 	(Key) 
  Type: 40, Cnt:  12 	(ALPC Port) 
  Type: 43, Cnt:  65 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6E74F0000 +53248            43944  10.0.10586.0         C:\WINDOWS\system32\svchost.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE75270000 +999424          994760  10.0.10586.0         C:\WINDOWS\SYSTEM32\ucrtbase.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE57450000 +368640          342016  10.0.10586.0         c:\windows\system32\aphostservice.dll 
  0x00007FFE57410000 +90112            68096  10.0.10586.0         c:\windows\system32\UserDataPlatformHelperUtil.dll 
  0x00007FFE57430000 +126976          104960  10.0.10586.0         c:\windows\system32\NetworkHelper.dll 
  0x00007FFE62840000 +45056            23040  10.0.10586.0         c:\windows\system32\MCCSPal.dll 
  0x00007FFE573A0000 +405504          387584  10.0.10586.0         c:\windows\system32\SYNCUTIL.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE62F70000 +307200          288768  10.0.10586.0         c:\windows\system32\VAULTCLI.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\advapi32.dll 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         c:\windows\system32\bcrypt.dll 
  0x00007FFE71F90000 +1269760        1270072  10.0.10586.0         C:\WINDOWS\SYSTEM32\wintypes.dll 
  0x00007FFE57380000 +69632            47616  10.0.10586.0         c:\windows\system32\InprocLogger.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE63710000 +258048          233472  10.0.10586.0         C:\WINDOWS\System32\FlightSettings.dll 
  0x00007FFE76160000 +1863680        1847520  10.0.10586.0         C:\WINDOWS\system32\CRYPT32.dll 
  0x00007FFE76140000 +65536            60440  10.0.10586.0         C:\WINDOWS\system32\MSASN1.dll 
  0x00007FFE759A0000 +380928          361824  10.0.10586.0         C:\WINDOWS\system32\msv1_0.DLL 
  0x00007FFE75990000 +49152            38792  10.0.10586.0         C:\WINDOWS\system32\NtlmShared.dll 
  0x00007FFE75A60000 +86016            70312  10.0.10586.0         C:\WINDOWS\system32\cryptdll.dll 
  0x00007FFE572F0000 +577536          555008  10.0.10586.0         C:\Windows\System32\SyncController.dll 
  0x00007FFE572D0000 +77824            55808  10.0.10586.0         C:\Windows\System32\APHostClient.dll 
  0x00007FFE57110000 +1490944        1466368  10.0.10586.0         C:\Windows\System32\PIMSTORE.dll 
  0x00007FFE57280000 +274432          256512  10.0.10586.0         C:\Windows\System32\AccountAccessor.dll 
  0x00007FFE570F0000 +69632            45056  10.0.10586.0         C:\Windows\System32\UserDataLanguageUtil.dll 
  0x00007FFE62490000 +49152            40816  10.0.10586.0         C:\Windows\System32\dsclient.dll 
  0x00007FFE570C0000 +196608          173568  10.0.10586.0         C:\Windows\System32\MCCSEngineShared.dll 
  0x00007FFE57070000 +311296          290816  10.0.10586.0         C:\Windows\System32\PhoneUtil.dll 
  0x00007FFE57010000 +262144          243712  10.0.10586.0         C:\Windows\System32\CEMAPI.dll 
  0x00007FFE57050000 +69632            45568  10.0.10586.0         C:\Windows\System32\UserDataTypeHelperUtil.dll 
  0x00007FFE6FF40000 +348160          334736  10.0.10586.11        C:\Windows\System32\policymanager.dll 
  0x00007FFE733C0000 +598016          594976  10.0.10586.0         C:\Windows\System32\msvcp110_win.dll 
  0x00007FFE62A00000 +843776          821248  10.0.10586.0         C:\Windows\System32\TokenBroker.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\wtsapi32.dll 
  0x00007FFE73B50000 +4796416        4774912  10.0.10586.0         C:\Windows\System32\ActXPrxy.dll 
  0x00007FFE6A690000 +163840          143872  10.0.10586.0         C:\WINDOWS\System32\IDStore.dll 
  0x00007FFE74510000 +114688           95744  10.0.10586.0         C:\WINDOWS\System32\SAMLIB.dll 
 
wmpnetwk.exe 
PID: 5964, Threads: 6, Owner: NT AUTHORITY\NETWORK SERVICE 
MEM - WrkSet: 1372 K (Peak: 21972 K), CommitSize: 5764 K, PageFaults: 7770 
TIME - Start 29.01.2016 12:21:30, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 306224 (82), Write: 368 (11), Other: 278588 (2724) 
CmdLine: "C:\Program Files\Windows Media Player\wmpnetwk.exe" 
   ## Type: 41 -> DuplicateHandle error: 0x5 
Handles: 432 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  5, Cnt:   2 	(Token) 
  Type:  8, Cnt:   9 	(Thread) 
  Type: 12, Cnt:  84 	(Event) 
  Type: 13, Cnt:   3 	(Mutant) 
  Type: 15, Cnt:  22 	(Semaphore) 
  Type: 16, Cnt:   2 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  14 	() 
  Type: 31, Cnt:  35 	(File) 
  Type: 36, Cnt:  12 	(Section) 
  Type: 39, Cnt:  61 	(Key) 
  Type: 40, Cnt:  10 	(ALPC Port) 
  Type: 41, Cnt:   1 	() 
  Type: 43, Cnt: 160 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF79BBE0000 +1507328        1474560  12.0.10586.0         C:\Program Files\Windows Media Player\wmpnetwk.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\USER32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE78310000 +22409216      22572624  10.0.10586.71        C:\WINDOWS\system32\SHELL32.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE763B0000 +6569984        6600904  10.0.10586.71        C:\WINDOWS\system32\windows.storage.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\shlwapi.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE76AB0000 +741376          726288  10.0.10586.0         C:\WINDOWS\system32\shcore.dll 
  0x00007FFE58350000 +36864            18432  10.0.10586.0         C:\WINDOWS\SYSTEM32\WSOCK32.dll 
  0x00007FFE760D0000 +307200          294472  10.0.10586.0         C:\WINDOWS\system32\powrprof.dll 
  0x00007FFE76120000 +81920            68752  10.0.10586.0         C:\WINDOWS\system32\profapi.dll 
  0x00007FFE76330000 +94208            80640  10.0.10586.0         C:\WINDOWS\system32\NETAPI32.dll 
  0x00007FFE72420000 +229376          219040  10.0.10586.0         C:\WINDOWS\SYSTEM32\IPHLPAPI.DLL 
  0x00007FFE75890000 +126976          113184  10.0.10586.0         C:\WINDOWS\SYSTEM32\USERENV.dll 
  0x00007FFE6FE90000 +167936          144184  10.0.10586.0         C:\WINDOWS\SYSTEM32\Cabinet.dll 
  0x00007FFE799D0000 +438272          430816  10.0.10586.0         C:\WINDOWS\system32\WS2_32.dll 
  0x00007FFE740B0000 +77824            64624  10.0.10586.0         C:\WINDOWS\SYSTEM32\WTSAPI32.dll 
  0x00007FFE74190000 +1597440        1603224  7.0.10586.0          C:\WINDOWS\SYSTEM32\PROPSYS.dll 
  0x00007FFE73890000 +221184          215896  10.0.10586.0         C:\WINDOWS\SYSTEM32\XmlLite.dll 
  0x00007FFE6FE60000 +155648          110584  10.0.10586.0         C:\WINDOWS\SYSTEM32\SRVCLI.DLL 
  0x00007FFE71D00000 +90112            78040  10.0.10586.0         C:\WINDOWS\SYSTEM32\WKSCLI.DLL 
  0x00007FFE75540000 +49152            42352  10.0.10586.0         C:\WINDOWS\SYSTEM32\NETUTILS.DLL 
  0x00007FFE76000000 +167936          159648  10.0.10586.0         C:\WINDOWS\SYSTEM32\bcrypt.dll 
  0x00007FFE754A0000 +352256          332656  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINSTA.dll 
  0x00007FFE75620000 +200704          186496  10.0.10586.0         C:\WINDOWS\SYSTEM32\ntmarta.dll 
  0x00007FFE77FD0000 +32768            24312  10.0.10586.0         C:\WINDOWS\system32\NSI.dll 
  0x00007FFE72270000 +90112            67072  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc6.DLL 
  0x00007FFE72220000 +106496           86016  10.0.10586.0         C:\WINDOWS\SYSTEM32\dhcpcsvc.DLL 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE60E20000 +53248            31232  10.0.10586.0         C:\WINDOWS\SYSTEM32\LINKINFO.dll 
  0x00007FFE5FBD0000 +3600384        3577344  7.0.10586.0          C:\WINDOWS\system32\tquery.dll 
  0x00007FFE56E90000 +1552384        1554152  12.0.10586.0         C:\WINDOWS\SYSTEM32\wmpmde.dll 
  0x00007FFE69B80000 +176128          152376  12.0.10586.0         C:\WINDOWS\SYSTEM32\RTWorkQ.DLL 
  0x00007FFE69850000 +1101824        1092456  12.0.10586.35        C:\WINDOWS\SYSTEM32\MFPlat.DLL 
  0x00007FFE75AB0000 +94208            81176  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTSP.dll 
  0x00007FFE75740000 +212992          204048  10.0.10586.0         C:\WINDOWS\system32\rsaenh.dll 
  0x00007FFE75BD0000 +45056            31072  10.0.10586.0         C:\WINDOWS\SYSTEM32\CRYPTBASE.dll 
  0x00007FFE6D190000 +53248            30720  10.0.10586.0         C:\WINDOWS\SYSTEM32\HTTPAPI.dll 
  0x00007FFE75A00000 +376832          357216  10.0.10586.0         C:\WINDOWS\system32\mswsock.dll 
  0x00007FFE56A30000 +2531328        2544256  12.0.10586.63        C:\WINDOWS\SYSTEM32\MFCORE.dll 
  0x00007FFE6AE30000 +32768            22752  10.0.10586.0         C:\WINDOWS\SYSTEM32\ksuser.dll 
  0x00007FFE56E20000 +421888          384512  10.0.10586.0         C:\WINDOWS\system32\WinSATAPI.dll 
  0x00007FFE77A10000 +4362240        4387680  10.0.10586.0         C:\WINDOWS\system32\SETUPAPI.dll 
  0x00007FFE73520000 +663552          651840  10.0.10586.0         C:\WINDOWS\system32\dxgi.dll 
  0x00007FFE59A10000 +1736704        1717248  10.0.10586.20        C:\WINDOWS\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_db007f1392e69ef4\gdiplus.dll 
  0x00007FFE63EF0000 +2596864        2587696  6.30.10586.63        C:\Windows\System32\msxml6.dll 
  0x00007FFE65E70000 +1802240        1734656  11.0.10586.17        C:\WINDOWS\SYSTEM32\urlmon.dll 
  0x00007FFE6DF30000 +3682304        3671888  11.0.10586.35        C:\WINDOWS\SYSTEM32\iertutil.dll 
  0x00007FFE66030000 +2678784        2647552  11.0.10586.17        C:\WINDOWS\SYSTEM32\wininet.dll 
  0x00007FFE56D40000 +864256          858952  12.0.10586.63        C:\WINDOWS\SYSTEM32\mfnetcore.dll 
  0x00007FFE734E0000 +262144          242688  10.0.10586.0         C:\WINDOWS\System32\netprofm.dll 
  0x00007FFE6FFD0000 +57344            38912  10.0.10586.0         C:\WINDOWS\System32\npmproxy.dll 
  0x00007FFE56980000 +696320          677376  7.0.10586.0          C:\WINDOWS\System32\StructuredQuery.dll 
  0x00007FFE75DB0000 +184320          175120  10.0.10586.0         C:\WINDOWS\system32\SspiCli.dll 
  0x00007FFE56900000 +475136          452608  10.0.10586.0         C:\WINDOWS\system32\upnphost.dll 
  0x00007FFE71B80000 +86016            62976  10.0.10586.0         C:\WINDOWS\system32\SSDPAPI.dll 
  0x00007FFE6DBF0000 +69632            45056  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemprox.dll 
  0x00007FFE6DB70000 +520192          471040  10.0.10586.0         C:\WINDOWS\SYSTEM32\wbemcomn.dll 
  0x00007FFE6D240000 +81920            62976  10.0.10586.0         C:\WINDOWS\system32\wbem\wbemsvc.dll 
  0x00007FFE6D260000 +1007616         987648  10.0.10586.0         C:\WINDOWS\system32\wbem\fastprox.dll 
  0x00007FFE750D0000 +147456          131248  10.0.10586.0         C:\WINDOWS\SYSTEM32\gpapi.dll 
  0x00007FFE76E20000 +548864          526336  10.0.10586.0         C:\WINDOWS\system32\FirewallAPI.dll 
  0x00007FFE74E50000 +204800          184320  10.0.10586.0         C:\WINDOWS\system32\fwbase.dll 
  0x00007FFE69600000 +217088          196608  10.0.10586.0         C:\WINDOWS\system32\FWPolicyIOMgr.dll 
  0x00007FFE75F60000 +626688          622912  10.0.10586.0         C:\WINDOWS\SYSTEM32\sxs.dll 
  0x00007FFE5E9A0000 +143360          123392  7.0.10586.0          C:\WINDOWS\system32\mssprxy.dll 
  0x00007FFE6D110000 +487424          464384  10.0.10586.0         C:\WINDOWS\System32\provsvc.dll 
 
Steam.exe [32bit] 
PID: 5188, Threads: 28, Owner: M?jPC\Pepík 
MEM - WrkSet: 101344 K (Peak: 210784 K), CommitSize: 81380 K, PageFaults: 2638141 
TIME - Start 29.01.2016 13:08:50, KernelTime: 00:01:28, UserTime: 00:04:31 
IO - Read: 3999236120 (98305), Write: 6194692791 (57406), Other: 127970072 (3406451) 
CmdLine: "E:\Program Files\Steam\steam.exe" "steam://rungameid/271590" 
Handles: 961 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  7, Cnt:   1 	(Process) 
  Type:  8, Cnt: 102 	(Thread) 
  Type: 12, Cnt: 175 	(Event) 
  Type: 13, Cnt:  33 	(Mutant) 
  Type: 15, Cnt:  30 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   8 	(IoCompletion) 
  Type: 30, Cnt:  15 	() 
  Type: 31, Cnt: 118 	(File) 
  Type: 36, Cnt: 170 	(Section) 
  Type: 39, Cnt:  76 	(Key) 
  Type: 40, Cnt:  15 	(ALPC Port) 
  Type: 43, Cnt: 201 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000FB0000 +3944448        3014224  3.25.95.20           E:\Program Files\Steam\steam.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000FB0000 +3944448        3014224  3.25.95.20           E:\Program Files\Steam\steam.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\psapi.dll 
  0x0000000064470000 +1150976         306768  3.25.95.20           E:\Program Files\Steam\crashhandler.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\WININET.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x00000000009C0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000070730000 +634880          613888  10.0.10586.71        C:\WINDOWS\SysWOW64\winhttp.dll 
  0x000000005B630000 +73728            55808  10.0.10586.0         C:\WINDOWS\SysWOW64\napinsp.dll 
  0x000000005B610000 +90112            70656  10.0.10586.0         C:\WINDOWS\SysWOW64\pnrpnsp.dll 
  0x000000005B5F0000 +81920            65024  10.0.10586.0         C:\WINDOWS\SysWOW64\NLAapi.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x000000005B5E0000 +45056            23552  10.0.10586.0         C:\WINDOWS\SysWOW64\winrnr.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\Iphlpapi.DLL 
  0x00000000733D0000 +290816          269824  10.0.10586.0         C:\WINDOWS\SysWOW64\fwpuclnt.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x00000000733C0000 +32768            13312  10.0.10586.71        C:\Windows\SysWOW64\rasadhlp.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x0000000071B50000 +73728            52736  10.0.10586.0         C:\WINDOWS\SysWOW64\ondemandconnroutehelper.dll 
  0x0000000063A60000 +10510336      10296912  3.25.95.20           E:\Program Files\Steam\steamui.dll 
  0x0000000063870000 +802816          782336  2.0.4.0              E:\Program Files\Steam\SDL2.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x00000000633A0000 +4993024        4962816  0.0.0.0              E:\Program Files\Steam\v8.dll 
  0x0000000063940000 +1118208         276560  3.25.95.20           E:\Program Files\Steam\tier0_s.dll 
  0x0000000073F10000 +991232          965120  10.0.10586.0         C:\WINDOWS\SysWOW64\COMDLG32.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000074D00000 +77824            69224  10.0.10586.0         C:\WINDOWS\SysWOW64\NETAPI32.dll 
  0x0000000063050000 +3461120        2546768  0.0.0.0              E:\Program Files\Steam\video.dll 
  0x00000000675F0000 +335872          264272  3.25.95.20           E:\Program Files\Steam\vstdlib_s.dll 
  0x000000005FDD0000 +917504          787456  10.0.10586.0         C:\WINDOWS\SysWOW64\OPENGL32.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000073A90000 +32768            16384  10.0.10586.0         C:\WINDOWS\SysWOW64\WSOCK32.dll 
  0x0000000062BF0000 +4026368        2549248  0.0.0.0              E:\Program Files\Steam\libavcodec-56.dll 
  0x0000000062FD0000 +512000          491008  0.0.0.0              E:\Program Files\Steam\libavformat-56.dll 
  0x00000000673B0000 +352256          332800  0.0.0.0              E:\Program Files\Steam\libavresample-2.dll 
  0x0000000062B70000 +483328          442880  0.0.0.0              E:\Program Files\Steam\libavutil-54.dll 
  0x0000000062AF0000 +507904          485888  0.0.0.0              E:\Program Files\Steam\libswscale-3.dll 
  0x00000000726C0000 +45056            22528  10.0.10586.0         C:\WINDOWS\SysWOW64\DAVHLPR.DLL 
  0x0000000062960000 +1576960        1556992  0.0.0.0              E:\Program Files\Steam\icui18n.dll 
  0x0000000062830000 +1216512        1187840  0.0.0.0              E:\Program Files\Steam\icuuc.dll 
  0x000000005FCE0000 +151552          141312  10.0.10586.0         C:\WINDOWS\SysWOW64\GLU32.dll 
  0x00000000715A0000 +974848          551424  10.0.10586.0         C:\WINDOWS\SysWOW64\DDRAW.dll 
  0x0000000071590000 +28672            11776  10.0.10586.3         C:\WINDOWS\SysWOW64\DCIMAN32.dll 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000068490000 +184320          167504  3.25.95.20           E:\Program Files\Steam\bin\filesystem_stdio.DLL 
  0x0000000062770000 +749568          722000  3.25.95.20           E:\Program Files\Steam\bin\vgui2_s.DLL 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x00000000626A0000 +827392          802896  0.0.0.0              E:\Program Files\Steam\bin\chromehtml.DLL 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000071F60000 +266240          248832  10.0.10586.0         C:\WINDOWS\SysWOW64\dataexchange.dll 
  0x0000000071EB0000 +684032          675064  10.0.10586.11        C:\WINDOWS\SysWOW64\dcomp.dll 
  0x00000000718F0000 +2203648        2185840  10.0.10586.17        C:\WINDOWS\SysWOW64\d3d11.dll 
  0x0000000071860000 +536576          525288  10.0.10586.0         C:\WINDOWS\SysWOW64\dxgi.dll 
  0x0000000071B70000 +839680          836208  10.0.10586.0         C:\WINDOWS\SysWOW64\twinapi.appcore.dll 
  0x000000006DB80000 +2035712        1987072  10.0.10586.0         C:\WINDOWS\SysWOW64\DWrite.dll 
  0x0000000038000000 +10493952      10282064  3.25.95.20           E:\Program Files\Steam\steamclient.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x0000000076F70000 +110592           99176  10.0.10586.0         C:\WINDOWS\SysWOW64\imagehlp.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x0000000071B30000 +40960            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\Secur32.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x000000006D340000 +315392          306840  10.0.10586.0         C:\WINDOWS\SysWOW64\Wlanapi.dll 
  0x0000000073230000 +421888          393216  10.0.10586.0         C:\WINDOWS\SysWOW64\wbemcomn.dll 
  0x0000000073150000 +782336          765440  10.0.10586.0         C:\WINDOWS\SysWOW64\wbem\fastprox.dll 
  0x0000000071490000 +348160          339344  10.0.10586.0         C:\WINDOWS\SysWOW64\MMDevAPI.DLL 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\PROPSYS.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x0000000071250000 +229376          205824  10.0.10586.0         C:\WINDOWS\SysWOW64\wdmaud.drv 
  0x0000000071500000 +28672            19648  10.0.10586.0         C:\WINDOWS\SysWOW64\ksuser.dll 
  0x00000000714F0000 +36864            28416  10.0.10586.0         C:\WINDOWS\SysWOW64\AVRT.dll 
  0x000000006E210000 +425984          405568  10.0.10586.71        C:\WINDOWS\SysWOW64\AUDIOSES.DLL 
  0x0000000071050000 +819200          820704  10.0.10586.0         C:\WINDOWS\SysWOW64\wintypes.dll 
  0x0000000071480000 +36864            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\msacm32.drv 
  0x0000000071230000 +98304            90912  10.0.10586.0         C:\WINDOWS\SysWOW64\MSACM32.dll 
  0x0000000071470000 +32768            18944  10.0.10586.0         C:\WINDOWS\SysWOW64\midimap.dll 
  0x000000006D040000 +548864          527360  10.0.10586.0         C:\WINDOWS\SysWOW64\dsound.dll 
  0x0000000067550000 +40960            25088  10.0.10586.0         C:\WINDOWS\SysWOW64\hid.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x000000006CC00000 +4431872        4412928  10.0.10586.0         C:\WINDOWS\SysWOW64\explorerframe.dll 
  0x000000006D2C0000 +299008          279040  10.0.10586.0         C:\WINDOWS\SysWOW64\edputil.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
  0x000000005E300000 +335872          328520  10.0.10586.0         C:\WINDOWS\SysWOW64\Bcp47Langs.dll 
  0x000000006D2B0000 +45056            25088  10.0.10586.0         C:\WINDOWS\SysWOW64\LINKINFO.dll 
  0x000000006D1E0000 +823296          802816  10.0.10586.0         C:\WINDOWS\SysWOW64\ntshrui.dll 
  0x000000006D1C0000 +114688           73872  10.0.10586.0         C:\WINDOWS\SysWOW64\srvcli.dll 
  0x00000000729C0000 +61440            43008  10.0.10586.0         C:\WINDOWS\SysWOW64\cscapi.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000060DC0000 +2715648        2677840  3.25.95.20           e:\program files\steam\bin\friendsui.DLL 
  0x0000000060BF0000 +1875968        1844816  3.25.95.20           e:\program files\steam\bin\serverbrowser.DLL 
  0x0000000073320000 +126976          111608  10.0.10586.0         C:\WINDOWS\SysWOW64\gpapi.dll 
  0x000000006D0D0000 +151552          136704  10.0.10586.0         C:\Windows\SysWOW64\cryptnet.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x000000000C4F0000 +225280          208896  0.0.0.0              E:\Program Files\Steam\bin\openvr_api.dll 
  0x000000006A4C0000 +221184          172032  10.0.10586.0         C:\Windows\SysWOW64\dinput8.dll 
  0x0000000060AD0000 +45056            32768  10.0.10586.0         C:\WINDOWS\SysWOW64\XInput1_4.dll 
  0x0000000070B90000 +1564672        1505280  11.0.10586.17        C:\Windows\SysWOW64\urlmon.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\Windows\SysWOW64\iertutil.dll 
  0x0000000072720000 +90112            85720  10.0.10586.0         C:\WINDOWS\SysWOW64\MPR.dll 
  0x0000000060B00000 +49152            36352  10.0.10586.0         C:\WINDOWS\SysWOW64\pcacli.dll 
  0x0000000069580000 +61440            41984  10.0.10586.0         C:\WINDOWS\SysWOW64\sfc_os.dll 
  0x0000000071B40000 +61440            47104  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVRTL.dll 
  0x000000005B010000 +462848          442880  10.0.10586.0         C:\WINDOWS\SysWOW64\efswrt.dll 
  0x0000000072230000 +598016          581632  10.0.10586.0         C:\WINDOWS\SysWOW64\apphelp.dll 
  0x0000000070E30000 +2211840        2193408  10.0.10586.0         C:\Windows\SysWOW64\ActXPrxy.dll 
  0x0000000060850000 +2592768        2578432  10.0.10586.0         C:\Windows\SysWOW64\gameux.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000071E20000 +528384          521704  10.0.10586.0         C:\WINDOWS\SysWOW64\sxs.dll 
  0x00000000732A0000 +53248            35840  10.0.10586.0         C:\WINDOWS\SysWOW64\wbem\wbemprox.dll 
  0x0000000073210000 +69632            49152  10.0.10586.0         C:\WINDOWS\SysWOW64\wbem\wbemsvc.dll 
 
steamwebhelper.exe [32bit] 
PID: 1208, Threads: 23, Owner: M?jPC\Pepík 
MEM - WrkSet: 30444 K (Peak: 33668 K), CommitSize: 10752 K, PageFaults: 10032 
TIME - Start 29.01.2016 13:08:56, KernelTime: 00:00:01, UserTime: 00:00:00 
IO - Read: 381903 (420), Write: 45266 (167), Other: 49020 (3694) 
CmdLine: "E:\Program Files\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Pep?­k\AppData\Local\Steam\htmlcache" -steampid=5188 -buildid=1453945499 -steamid="0"  --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write 
Handles: 573 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  6, Cnt:   1 	(Job) 
  Type:  7, Cnt:  52 	(Process) 
  Type:  8, Cnt:  44 	(Thread) 
  Type: 12, Cnt: 166 	(Event) 
  Type: 13, Cnt:  20 	(Mutant) 
  Type: 15, Cnt:  15 	(Semaphore) 
  Type: 16, Cnt:   1 	(Timer) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   3 	(WindowStation) 
  Type: 21, Cnt:   2 	(Desktop) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   9 	(IoCompletion) 
  Type: 30, Cnt:  42 	() 
  Type: 31, Cnt:  27 	(File) 
  Type: 36, Cnt:  27 	(Section) 
  Type: 39, Cnt:  42 	(Key) 
  Type: 40, Cnt:   4 	(ALPC Port) 
  Type: 43, Cnt: 102 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000320000 +2797568        1944144  3.25.95.20           E:\Program Files\Steam\bin\steamwebhelper.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000320000 +2797568        1944144  3.25.95.20           E:\Program Files\Steam\bin\steamwebhelper.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000055B00000 +49848320      48387872  3.2526.1348.0        E:\Program Files\Steam\bin\libcef.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000000F60000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\PSAPI.DLL 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000073C80000 +102400           92480  10.0.10586.0         C:\WINDOWS\SysWOW64\USERENV.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\WTSAPI32.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000071B30000 +40960            24064  10.0.10586.0         C:\WINDOWS\SysWOW64\Secur32.dll 
  0x00000000721D0000 +344064          322560  7.2.10586.0          C:\WINDOWS\SysWOW64\OLEACC.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\VERSION.dll 
  0x0000000071120000 +90112            77824  10.0.10586.0         C:\WINDOWS\SysWOW64\USP10.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\ws2_32.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x000000006DB80000 +2035712        1987072  10.0.10586.0         C:\WINDOWS\SysWOW64\dwrite.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x000000005B5F0000 +81920            65024  10.0.10586.0         C:\WINDOWS\SysWOW64\NLAapi.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x00000000732B0000 +77824            57344  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc6.DLL 
  0x0000000073300000 +81920            64000  10.0.10586.0         C:\WINDOWS\SysWOW64\dhcpcsvc.DLL 
  0x000000006E210000 +425984          405568  10.0.10586.71        C:\WINDOWS\SysWOW64\audioses.dll 
  0x0000000071490000 +348160          339344  10.0.10586.0         C:\WINDOWS\SysWOW64\MMDevAPI.DLL 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\PROPSYS.dll 
  0x0000000071050000 +819200          820704  10.0.10586.0         C:\WINDOWS\SysWOW64\wintypes.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000064470000 +1150976         306768  3.25.95.20           E:\Program Files\Steam\crashhandler.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\WININET.dll 
  0x0000000070730000 +634880          613888  10.0.10586.71        C:\WINDOWS\SysWOW64\WINHTTP.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x00000000733C0000 +32768            13312  10.0.10586.71        C:\Windows\SysWOW64\rasadhlp.dll 
  0x00000000733D0000 +290816          269824  10.0.10586.0         C:\WINDOWS\SysWOW64\fwpuclnt.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x0000000073320000 +126976          111608  10.0.10586.0         C:\WINDOWS\SysWOW64\gpapi.dll 
  0x000000006D0D0000 +151552          136704  10.0.10586.0         C:\Windows\SysWOW64\cryptnet.dll 
 
SteamService.exe [32bit] 
PID: 6148, Threads: 6, Owner: NT AUTHORITY\SYSTEM 
MEM - WrkSet: 11344 K (Peak: 13224 K), CommitSize: 5956 K, PageFaults: 29156 
TIME - Start 29.01.2016 13:08:57, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 2229760 (206), Write: 1148 (137), Other: 786 (924) 
CmdLine: "C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService 
Handles: 216 
  Type:  3, Cnt:   4 	(Directory) 
  Type:  8, Cnt:   7 	(Thread) 
  Type: 12, Cnt:  49 	(Event) 
  Type: 15, Cnt:  14 	(Semaphore) 
  Type: 17, Cnt:   4 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   2 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:   5 	() 
  Type: 31, Cnt:  22 	(File) 
  Type: 36, Cnt:   7 	(Section) 
  Type: 39, Cnt:  13 	(Key) 
  Type: 40, Cnt:   2 	(ALPC Port) 
  Type: 43, Cnt:  80 	(?) 
  Type: 44, Cnt:   1 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00000000002D0000 +1687552         835152  3.25.95.20           C:\Program Files (x86)\Common Files\Steam\SteamService.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x00000000002D0000 +1687552         835152  3.25.95.20           C:\Program Files (x86)\Common Files\Steam\SteamService.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\SHLWAPI.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\advapi32.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000074C70000 +24576            17048  10.0.10586.0         C:\WINDOWS\SysWOW64\psapi.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x000000005B630000 +73728            55808  10.0.10586.0         C:\WINDOWS\SysWOW64\napinsp.dll 
  0x000000005B610000 +90112            70656  10.0.10586.0         C:\WINDOWS\SysWOW64\pnrpnsp.dll 
  0x000000005B5F0000 +81920            65024  10.0.10586.0         C:\WINDOWS\SysWOW64\NLAapi.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x0000000073480000 +540672          535088  10.0.10586.0         C:\WINDOWS\SysWOW64\DNSAPI.dll 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x000000005B5E0000 +45056            23552  10.0.10586.0         C:\WINDOWS\SysWOW64\winrnr.dll 
  0x0000000073450000 +135168          121704  3.0.0.10             C:\Program Files (x86)\Bonjour\mdnsNSP.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\Iphlpapi.DLL 
  0x00000000622A0000 +4177920        2205264  3.25.95.20           E:\Program Files\Steam\bin\SteamService.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x0000000072880000 +1306624        1196544  10.0.10586.0         C:\WINDOWS\SysWOW64\dbghelp.dll 
  0x0000000073CA0000 +32768            27360  10.0.10586.0         C:\WINDOWS\SysWOW64\version.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\winmm.dll 
  0x00000000011D0000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\comctl32.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\PROPSYS.dll 
 
wmplayer.exe [32bit] 
PID: 6084, Threads: 6, Owner: M?jPC\Pepík 
MEM - WrkSet: 43152 K (Peak: 47332 K), CommitSize: 21540 K, PageFaults: 34979 
TIME - Start 29.01.2016 13:09:01, KernelTime: 00:00:06, UserTime: 00:00:06 
IO - Read: 10620549 (1252), Write: 294734 (73), Other: 397399 (28361) 
CmdLine: "C:\Program Files (x86)\Windows Media Player\wmplayer.exe" /Play -Embedding 
Handles: 694 
  Type:  3, Cnt:   5 	(Directory) 
  Type:  8, Cnt:  10 	(Thread) 
  Type: 12, Cnt: 120 	(Event) 
  Type: 13, Cnt:  26 	(Mutant) 
  Type: 15, Cnt:  21 	(Semaphore) 
  Type: 17, Cnt:   8 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   4 	(TpWorkerFactory) 
  Type: 29, Cnt:   4 	(IoCompletion) 
  Type: 30, Cnt:  26 	() 
  Type: 31, Cnt:  58 	(File) 
  Type: 36, Cnt:  37 	(Section) 
  Type: 39, Cnt:  80 	(Key) 
  Type: 40, Cnt:  17 	(ALPC Port) 
  Type: 43, Cnt: 274 	(?) 
  Type: 47, Cnt:   1 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x0000000000EC0000 +184320          166912  12.0.10586.0         C:\Program Files (x86)\Windows Media Player\wmplayer.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00000000771F0000 +327680          314616  10.0.10586.0         C:\WINDOWS\system32\wow64.dll 
  0x0000000077240000 +499712          490752  10.0.10586.0         C:\WINDOWS\system32\wow64win.dll 
  0x00000000771E0000 +32768            21240  10.0.10586.0         C:\WINDOWS\system32\wow64cpu.dll 
  0x0000000000EC0000 +184320          166912  12.0.10586.0         C:\Program Files (x86)\Windows Media Player\wmplayer.exe 
  0x0000000076FA0000 +1552384        1540768  10.0.10586.20        C:\WINDOWS\SysWOW64\ntdll.dll 
  0x00000000747C0000 +917504          620176  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNEL32.DLL 
  0x00000000745B0000 +1564672        1557768  10.0.10586.0         C:\WINDOWS\SysWOW64\KERNELBASE.dll 
  0x0000000074C80000 +503808          499432  10.0.10586.63        C:\WINDOWS\SysWOW64\ADVAPI32.dll 
  0x0000000074AC0000 +778240          773168  7.0.10586.0          C:\WINDOWS\SysWOW64\msvcrt.dll 
  0x0000000073E60000 +278528          269616  10.0.10586.0         C:\WINDOWS\SysWOW64\sechost.dll 
  0x0000000076120000 +708608          707600  10.0.10586.0         C:\WINDOWS\SysWOW64\RPCRT4.dll 
  0x0000000073CD0000 +122880          116216  10.0.10586.0         C:\WINDOWS\SysWOW64\SspiCli.dll 
  0x0000000073CC0000 +40960            31528  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTBASE.dll 
  0x0000000074730000 +360448          360480  10.0.10586.0         C:\WINDOWS\SysWOW64\bcryptPrimitives.dll 
  0x00000000743F0000 +1339392        1337240  10.0.10586.20        C:\WINDOWS\SysWOW64\USER32.dll 
  0x0000000076390000 +1372160        1371792  10.0.10586.63        C:\WINDOWS\SysWOW64\GDI32.dll 
  0x0000000073DF0000 +389120          388896  10.0.10586.0         C:\WINDOWS\SysWOW64\WS2_32.dll 
  0x0000000074790000 +176128          169928  10.0.10586.0         C:\WINDOWS\SysWOW64\IMM32.DLL 
  0x0000000072C60000 +479232          458752  10.0.10586.0         C:\WINDOWS\SysWOW64\uxtheme.dll 
  0x00000000761D0000 +1822720        1824264  10.0.10586.0         C:\WINDOWS\SysWOW64\combase.dll 
  0x0000000074D20000 +20967424      21125400  10.0.10586.71        C:\WINDOWS\SysWOW64\SHELL32.dll 
  0x0000000074C30000 +225280          217976  10.0.10586.0         C:\WINDOWS\SysWOW64\cfgmgr32.dll 
  0x0000000076660000 +5214208        5238360  10.0.10586.71        C:\WINDOWS\SysWOW64\windows.storage.dll 
  0x0000000074BE0000 +282624          276336  10.0.10586.0         C:\WINDOWS\SysWOW64\shlwapi.dll 
  0x0000000076F90000 +49152            39792  10.0.10586.0         C:\WINDOWS\SysWOW64\kernel.appcore.dll 
  0x0000000076530000 +577536          569744  10.0.10586.0         C:\WINDOWS\SysWOW64\shcore.dll 
  0x00000000742A0000 +278528          270672  10.0.10586.0         C:\WINDOWS\SysWOW64\powrprof.dll 
  0x0000000074540000 +61440            54752  10.0.10586.0         C:\WINDOWS\SysWOW64\profapi.dll 
  0x0000000061680000 +12693504      12585984  12.0.10586.0         C:\WINDOWS\SysWOW64\wmp.dll 
  0x0000000074A20000 +598016          589856  10.0.10586.0         C:\WINDOWS\SysWOW64\OLEAUT32.dll 
  0x0000000068F80000 +1081344        1087712  12.0.10586.0         C:\WINDOWS\SysWOW64\mfperfhelper.dll 
  0x0000000073CF0000 +962560          957608  10.0.10586.0         C:\WINDOWS\SysWOW64\ole32.dll 
  0x0000000072060000 +1486848        1467392  10.0.10586.20        C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.10586.20_none_22adb5eaa762c7fa\gdiplus.dll 
  0x0000000071FB0000 +118784           94208  10.0.10586.0         C:\WINDOWS\SysWOW64\dwmapi.dll 
  0x0000000006630000 +9383936        9375232  12.0.10586.0         C:\WINDOWS\SysWOW64\wmploc.dll 
  0x0000000010000000 +385024          356864  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 
  0x00000000729F0000 +147456          134352  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMM.dll 
  0x0000000073AA0000 +667648          653968  9.0.30729.9177       C:\WINDOWS\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_5093cc7abcb795e9\MSVCR90.dll 
  0x0000000000C00000 +143360          132744  10.0.10586.0         C:\WINDOWS\SysWOW64\WINMMBASE.dll 
  0x0000000072CE0000 +2158592        2142048  6.10.10586.0         C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528\COMCTL32.dll 
  0x0000000074180000 +1175552        1174008  10.0.10586.71        C:\WINDOWS\SysWOW64\MSCTF.dll 
  0x000000006A280000 +53248            39936  10.0.10586.0         C:\WINDOWS\SysWOW64\atlthunk.dll 
  0x00000000765C0000 +540672          526304  2001.12.10941.16384   C:\WINDOWS\SysWOW64\clbcatq.dll 
  0x0000000073510000 +1355776        1355344  7.0.10586.0          C:\WINDOWS\SysWOW64\propsys.dll 
  0x0000000073390000 +163840          150840  10.0.10586.0         C:\WINDOWS\SysWOW64\ntmarta.dll 
  0x00000000647A0000 +200704          179712  10.0.10586.0         C:\WINDOWS\SysWOW64\AUTHZ.dll 
  0x0000000071490000 +348160          339344  10.0.10586.0         C:\WINDOWS\SysWOW64\MMDevApi.dll 
  0x00000000732D0000 +139264          129160  10.0.10586.0         C:\WINDOWS\SysWOW64\DEVOBJ.dll 
  0x0000000069360000 +929792          925064  12.0.10586.35        C:\WINDOWS\SysWOW64\MFPlat.DLL 
  0x0000000069330000 +147456          128648  12.0.10586.0         C:\WINDOWS\SysWOW64\RTWorkQ.DLL 
  0x000000006E210000 +425984          405568  10.0.10586.71        C:\WINDOWS\SysWOW64\AUDIOSES.DLL 
  0x0000000071050000 +819200          820704  10.0.10586.0         C:\WINDOWS\SysWOW64\wintypes.dll 
  0x0000000072810000 +212992          200192  10.0.10586.0         C:\WINDOWS\SysWOW64\netprofm.dll 
  0x0000000072800000 +36864            20992  10.0.10586.0         C:\WINDOWS\SysWOW64\npmproxy.dll 
  0x0000000061620000 +344064          329216  10.0.10586.0         C:\WINDOWS\SysWOW64\upnphost.dll 
  0x0000000068480000 +65536            49152  10.0.10586.0         C:\WINDOWS\SysWOW64\SSDPAPI.dll 
  0x0000000073370000 +77824            69232  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPTSP.dll 
  0x0000000073340000 +192512          183896  10.0.10586.0         C:\WINDOWS\SysWOW64\rsaenh.dll 
  0x0000000073690000 +110592          107408  10.0.10586.0         C:\WINDOWS\SysWOW64\bcrypt.dll 
  0x00000000615F0000 +159744          153920  12.0.10586.0         C:\Windows\SysWOW64\wmpps.dll 
  0x0000000071F60000 +266240          248832  10.0.10586.0         C:\WINDOWS\SysWOW64\dataexchange.dll 
  0x00000000718F0000 +2203648        2185840  10.0.10586.17        C:\WINDOWS\SysWOW64\d3d11.dll 
  0x0000000071EB0000 +684032          675064  10.0.10586.11        C:\WINDOWS\SysWOW64\dcomp.dll 
  0x0000000071860000 +536576          525288  10.0.10586.0         C:\WINDOWS\SysWOW64\dxgi.dll 
  0x0000000071B70000 +839680          836208  10.0.10586.0         C:\WINDOWS\SysWOW64\twinapi.appcore.dll 
  0x0000000061540000 +663552          647168  5.812.10586.3        C:\Windows\SysWOW64\jscript.dll 
  0x0000000064790000 +53248            37376  4.9.10586.0          C:\WINDOWS\SysWOW64\amsi.dll 
  0x0000000071E20000 +528384          521704  10.0.10586.0         C:\WINDOWS\SysWOW64\sxs.dll 
  0x0000000073CB0000 +61440            53208  10.0.10586.0         C:\WINDOWS\SysWOW64\WTSAPI32.dll 
  0x00000000727B0000 +278528          260360  10.0.10586.0         C:\WINDOWS\SysWOW64\WINSTA.dll 
  0x0000000070330000 +1519616        1522152  10.0.10586.0         C:\WINDOWS\SysWOW64\WindowsCodecs.dll 
  0x0000000074B80000 +385024          369664  10.0.10586.0         C:\WINDOWS\SysWOW64\FirewallAPI.dll 
  0x0000000071FD0000 +180224          162816  10.0.10586.0         C:\WINDOWS\SysWOW64\fwbase.dll 
  0x0000000070E30000 +2211840        2193408  10.0.10586.0         C:\Windows\SysWOW64\ActXPrxy.dll 
  0x000000006CC00000 +4431872        4412928  10.0.10586.0         C:\WINDOWS\SysWOW64\explorerframe.dll 
  0x000000006D2C0000 +299008          279040  10.0.10586.0         C:\WINDOWS\SysWOW64\edputil.dll 
  0x0000000073140000 +24576             7168  10.0.10586.0         C:\WINDOWS\SysWOW64\MSIMG32.dll 
  0x00000000614E0000 +368640          351232  12.0.10586.0         C:\WINDOWS\SysWOW64\mswmdm.dll 
  0x0000000076B60000 +4239360        4268360  10.0.10586.0         C:\WINDOWS\SysWOW64\SETUPAPI.dll 
  0x00000000764E0000 +270336          268040  10.0.10586.0         C:\WINDOWS\SysWOW64\WINTRUST.dll 
  0x0000000076650000 +57344            49592  10.0.10586.0         C:\WINDOWS\SysWOW64\MSASN1.dll 
  0x00000000748A0000 +1540096        1535024  10.0.10586.0         C:\WINDOWS\SysWOW64\CRYPT32.dll 
  0x0000000061450000 +323584          309760  10.0.10586.0         C:\Windows\SysWOW64\wpdsp.dll 
  0x00000000692B0000 +516096          511320  12.0.10586.11        C:\WINDOWS\SysWOW64\MF.dll 
  0x0000000061350000 +217088          208176  12.0.10586.63        C:\WINDOWS\SysWOW64\MFTranscode.DLL 
  0x0000000069090000 +2170880        2180128  12.0.10586.63        C:\WINDOWS\SysWOW64\MFCORE.DLL 
  0x0000000071500000 +28672            19648  10.0.10586.0         C:\WINDOWS\SysWOW64\ksuser.dll 
  0x0000000061310000 +258048          253080  12.0.10586.0         C:\Windows\SysWOW64\wmpeffects.dll 
  0x0000000071510000 +36864            28936  10.0.10586.0         C:\Windows\SysWOW64\msdmo.dll 
  0x0000000061230000 +897024          898184  12.0.10586.35        C:\WINDOWS\SysWOW64\mfsrcsnk.dll 
  0x000000006D2B0000 +45056            25088  10.0.10586.0         C:\WINDOWS\SysWOW64\LINKINFO.dll 
  0x000000006D1E0000 +823296          802816  10.0.10586.0         C:\WINDOWS\SysWOW64\ntshrui.dll 
  0x000000006D1C0000 +114688           73872  10.0.10586.0         C:\WINDOWS\SysWOW64\srvcli.dll 
  0x00000000729C0000 +61440            43008  10.0.10586.0         C:\WINDOWS\SysWOW64\cscapi.dll 
  0x0000000064780000 +49152            37376  12.0.10586.0         C:\WINDOWS\SysWOW64\wmdmps.dll 
  0x0000000061130000 +987136          983464  12.0.10586.35        C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 
  0x00000000714F0000 +36864            28416  10.0.10586.0         C:\WINDOWS\SysWOW64\AVRT.dll 
  0x000000005ABF0000 +102400          100160  10.0.10586.63        C:\Windows\SysWOW64\mp3dmod.dll 
  0x00000000610F0000 +233472          232384  10.0.10586.0         C:\Windows\SysWOW64\resampledmo.dll 
  0x0000000072230000 +598016          581632  10.0.10586.0         C:\WINDOWS\SysWOW64\apphelp.dll 
  0x000000005B320000 +2244608        2217984  10.0.10586.0         C:\WINDOWS\SysWOW64\Wpc.dll 
  0x000000005B2A0000 +475136          450560  10.0.10586.0         C:\WINDOWS\SysWOW64\msvcp_win.dll 
  0x000000005B1B0000 +921600          922432  10.0.10586.0         C:\WINDOWS\SysWOW64\ucrtbase.dll 
  0x000000005B660000 +86016            67072  10.0.10586.0         C:\WINDOWS\SysWOW64\samcli.dll 
  0x0000000064850000 +253952          237056  10.0.10586.0         C:\Windows\SysWOW64\thumbcache.dll 
  0x0000000072A50000 +2150400        2121216  11.0.10586.17        C:\WINDOWS\SysWOW64\wininet.dll 
  0x00000000708C0000 +2928640        2919320  11.0.10586.35        C:\WINDOWS\SysWOW64\iertutil.dll 
  0x0000000071B50000 +73728            52736  10.0.10586.0         C:\WINDOWS\SysWOW64\ondemandconnroutehelper.dll 
  0x0000000073420000 +192512          187488  10.0.10586.0         C:\WINDOWS\SysWOW64\IPHLPAPI.DLL 
  0x0000000070730000 +634880          613888  10.0.10586.71        C:\WINDOWS\SysWOW64\winhttp.dll 
  0x0000000073DE0000 +28672            20152  10.0.10586.0         C:\WINDOWS\SysWOW64\NSI.dll 
  0x0000000073A40000 +323584          312160  10.0.10586.0         C:\WINDOWS\SysWOW64\mswsock.dll 
  0x00000000726A0000 +32768            26848  10.0.10586.0         C:\WINDOWS\SysWOW64\WINNSI.DLL 
  0x0000000061060000 +450560          433152  10.0.10586.0         C:\Windows\SysWOW64\imapi2.dll 
  0x0000000059EB0000 +397312          381440  10.0.10586.0         C:\WINDOWS\SysWOW64\provsvc.dll 
  0x0000000064D20000 +184320          181776  10.0.10586.0         C:\WINDOWS\SysWOW64\XmlLite.dll 
  0x0000000066D10000 +356352          336384  10.0.10586.0         C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 
  0x0000000074390000 +368640          358240  10.0.10586.0         C:\WINDOWS\SysWOW64\coml2.dll 
 
taskhostw.exe 
PID: 10604, Threads: 4, Owner: M?jPC\Pepík 
MEM - WrkSet: 15796 K (Peak: 17788 K), CommitSize: 4688 K, PageFaults: 5217 
TIME - Start 29.01.2016 13:10:09, KernelTime: 00:00:00, UserTime: 00:00:00 
IO - Read: 332079 (304), Write: 4464 (228), Other: 16652 (2925) 
CmdLine: taskhostw.exe 
Handles: 255 
  Type:  3, Cnt:   2 	(Directory) 
  Type:  8, Cnt:   4 	(Thread) 
  Type: 12, Cnt:  47 	(Event) 
  Type: 13, Cnt:   1 	(Mutant) 
  Type: 15, Cnt:  32 	(Semaphore) 
  Type: 17, Cnt:   6 	(IRTimer) 
  Type: 20, Cnt:   2 	(WindowStation) 
  Type: 21, Cnt:   1 	(Desktop) 
  Type: 24, Cnt:   3 	(TpWorkerFactory) 
  Type: 29, Cnt:   3 	(IoCompletion) 
  Type: 30, Cnt:  13 	() 
  Type: 31, Cnt:  16 	(File) 
  Type: 36, Cnt:   8 	(Section) 
  Type: 39, Cnt:  16 	(Key) 
  Type: 40, Cnt:  10 	(ALPC Port) 
  Type: 43, Cnt:  91 	(?) 
Modules: (BaseAddr +BaseSize   FileSize  FileVersion   Path) 
  0x00007FF6DE160000 +102400           90440  10.0.10586.0         C:\WINDOWS\system32\taskhostw.exe 
  0x00007FFE79AB0000 +1839104        1817160  10.0.10586.20        C:\WINDOWS\SYSTEM32\ntdll.dll 
  0x00007FFE771D0000 +708608          705584  10.0.10586.0         C:\WINDOWS\system32\KERNEL32.DLL 
  0x00007FFE76C30000 +1998848        1997320  10.0.10586.0         C:\WINDOWS\system32\KERNELBASE.dll 
  0x00007FFE78060000 +643072          633760  7.0.10586.0          C:\WINDOWS\system32\msvcrt.dll 
  0x00007FFE776D0000 +1163264        1162144  10.0.10586.0         C:\WINDOWS\system32\RPCRT4.dll 
  0x00007FFE77280000 +2609152        2606824  10.0.10586.0         C:\WINDOWS\system32\combase.dll 
  0x00007FFE76B70000 +434176          431296  10.0.10586.0         C:\WINDOWS\system32\bcryptPrimitives.dll 
  0x00007FFE77850000 +790528          785088  10.0.10586.0         C:\WINDOWS\system32\OLEAUT32.dll 
  0x00007FFE76150000 +61440            45016  10.0.10586.0         C:\WINDOWS\system32\kernel.appcore.dll 
  0x00007FFE78000000 +372736          371360  10.0.10586.0         C:\WINDOWS\system32\sechost.dll 
  0x00007FFE79870000 +1400832        1399224  10.0.10586.20        C:\WINDOWS\system32\user32.dll 
  0x00007FFE77E40000 +1597440        1594408  10.0.10586.63        C:\WINDOWS\system32\GDI32.dll 
  0x00007FFE77920000 +241664          230416  10.0.10586.0         C:\WINDOWS\system32\IMM32.DLL 
  0x00007FFE74A50000 +614400          589312  10.0.10586.0         C:\WINDOWS\system32\uxtheme.dll 
  0x00007FFE78100000 +1417216        1415200  10.0.10586.71        C:\WINDOWS\system32\MSCTF.dll 
  0x0000000180000000 +442368          402432  0.0.0.0              E:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 
  0x00007FFE77170000 +335872          332104  10.0.10586.0         C:\WINDOWS\system32\SHLWAPI.dll 
  0x00007FFE74800000 +143360          121992  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMM.dll 
  0x0000000076210000 +667648          642192  9.0.30729.9177       C:\WINDOWS\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9177_none_08e695a3a83b6ce3\MSVCR90.dll 
  0x00007FFE747A0000 +180224          166344  10.0.10586.0         C:\WINDOWS\SYSTEM32\WINMMBASE.dll 
  0x00007FFE76BE0000 +274432          264488  10.0.10586.0         C:\WINDOWS\system32\cfgmgr32.dll 
  0x00007FFE73910000 +139264          107520  10.0.10586.0         C:\WINDOWS\system32\dwmapi.dll 
  0x00007FFE78260000 +684032          662704  2001.12.10941.16384   C:\WINDOWS\system32\clbcatq.dll 
  0x00007FFE66B80000 +118784          100352  10.0.10586.0         C:\WINDOWS\System32\wdi.dll 
  0x00007FFE5DDC0000 +94208            70656  10.0.10586.0         C:\WINDOWS\system32\radarrs.dll 
  0x00007FFE77960000 +684032          671472  10.0.10586.63        C:\WINDOWS\system32\ADVAPI32.dll 
  0x00007FFE77020000 +1323008        1322240  10.0.10586.0         C:\WINDOWS\system32\ole32.dll 
  0x00007FFE78310000 +22409216      225                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     