
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Kontrola logu prosím
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
zelvalenka
- Návštěvník

- Příspěvky: 54
- Registrován: 24 říj 2015 16:54
Kontrola logu prosím
Zdravím a prosím o kontrolu,
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vendeta at 2016-03-20 08:39:23
Microsoft Windows 10 Home
System drive C: has 676 GB (90%) free of 753 GB
Total RAM: 8146 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:39:27, on 20.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Vendeta\Downloads\AdwCleaner.exe
C:\Program Files\trend micro\Vendeta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8013
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: AVG Web TuneUp - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Web TuneUp\4.2.6.552\AVG Web TuneUp.dll (file missing)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater40.2.6 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8598 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties"
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {df68ca22-6caf-4df9-ae410dd9308a8024}
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 58f6e5ad-48e5-414e-94e9-6686d1c11c60 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\msdtc.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{48DA6741-1BF0-4A44-8325-293086C79077}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\browser_broker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\DataExchangeHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:3620 CREDAT:206099 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:3620 CREDAT:206120 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:3620 CREDAT:337182 EDGEHOST /prefetch:6
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100047_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100047 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe48_ Global\UsGthrCtrlFltPipeMssGthrPipe48 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Vendeta\Downloads\FRST64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Users\Vendeta\Downloads\AdwCleaner.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Users\Vendeta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 209504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Web TuneUp - C:\Program Files (x86)\AVG Web TuneUp\4.2.6.552\AVG Web TuneUp.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 6141528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 4445272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-18 8783616]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5595336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-18 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu]
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-01-17 1284680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe /MONITOR []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 08:39:23 ----D---- C:\rsit
2016-03-20 08:39:23 ----D---- C:\Program Files\trend micro
2016-03-20 08:38:26 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 08:37:39 ----D---- C:\FRST
2016-03-20 08:18:52 ----HD---- C:\OneDriveTemp
2016-03-19 10:07:12 ----D---- C:\WINDOWS\system32\SleepStudy
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\drivers\rt640x64.sys
2016-03-18 12:28:52 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosade.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sltech64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slprp64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slcnt64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2016-03-18 12:28:46 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMUI.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMLimiter.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMHVS.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ_Voice.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMClariFi.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CX64APO.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 12:00:03 ----SHD---- C:\Recovery
2016-03-18 11:58:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-03-18 11:51:18 ----SD---- C:\Users\Vendeta\AppData\Roaming\Microsoft
2016-03-18 11:50:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 11:50:37 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-18 11:49:02 ----D---- C:\WINDOWS\system32\DAX2
2016-03-18 11:48:45 ----D---- C:\Program Files\Realtek
2016-03-18 11:48:44 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-18 11:48:42 ----D---- C:\ProgramData\NVIDIA
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-18 11:48:23 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-18 11:48:17 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-18 11:47:36 ----D---- C:\WINDOWS\Prefetch
2016-03-18 11:46:59 ----ASH---- C:\swapfile.sys
2016-03-18 11:46:02 ----DC---- C:\WINDOWS\Panther
2016-03-18 11:43:39 ----D---- C:\Windows.old
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\msmq
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\BestPractices
2016-03-18 11:37:52 ----D---- C:\Program Files\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files\MSBuild
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\MSBuild
2016-03-18 11:37:52 ----D---- C:\inetpub
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-18 11:37:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:54 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-09 10:18:44 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-03-09 10:18:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2016-03-09 10:18:42 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2016-03-06 15:59:40 ----D---- C:\Program Files\Common Files\AV
2016-03-06 15:01:22 ----A---- C:\WINDOWS\ntbtlog.txt
2016-03-06 14:58:03 ----D---- C:\ProgramData\ESET
2016-03-06 14:58:03 ----D---- C:\Program Files\ESET
2016-03-06 14:40:03 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2016-03-06 14:40:02 ----D---- C:\Program Files\VS Revo Group
2016-03-06 08:52:37 ----D---- C:\Users\Vendeta\AppData\Roaming\PortForward.com
2016-03-06 08:52:37 ----D---- C:\Program Files (x86)\Portforward
2016-02-27 15:57:47 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SETB3F4.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SET92F9.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SET4E7E.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SET4986.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\SET34F4.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtvienna.dat
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtkSSTsetting.dat
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\Rovio
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\NVIDIA
2016-02-22 17:17:22 ----D---- C:\Games
2016-02-22 16:31:45 ----D---- C:\ProgramData\Steam
======List of files/folders modified in the last 1 month======
2016-03-20 08:39:23 ----RD---- C:\Program Files
2016-03-20 08:39:18 ----D---- C:\WINDOWS\Temp
2016-03-20 08:39:11 ----D---- C:\Windows
2016-03-20 08:38:26 ----RD---- C:\Program Files (x86)
2016-03-20 08:18:28 ----D---- C:\WINDOWS\system32\sru
2016-03-19 18:39:23 ----D---- C:\Users\Vendeta\AppData\Roaming\uTorrent
2016-03-19 17:40:50 ----D---- C:\WINDOWS\system32\config
2016-03-19 17:38:34 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-19 16:31:56 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 10:07:12 ----D---- C:\WINDOWS\System32
2016-03-19 10:06:26 ----D---- C:\WINDOWS\Logs
2016-03-19 09:40:14 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-19 09:34:34 ----D---- C:\WINDOWS\INF
2016-03-19 09:32:19 ----D---- C:\WINDOWS\appcompat
2016-03-19 09:31:02 ----D---- C:\WINDOWS\system32\WDI
2016-03-18 18:45:05 ----RD---- C:\WINDOWS\assembly
2016-03-18 15:44:51 ----HD---- C:\Program Files\WindowsApps
2016-03-18 15:18:30 ----D---- C:\WINDOWS\WinSxS
2016-03-18 15:18:30 ----D---- C:\WINDOWS\SysWOW64
2016-03-18 15:18:30 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 15:18:14 ----SHD---- C:\WINDOWS\Installer
2016-03-18 12:33:20 ----SHD---- C:\System Volume Information
2016-03-18 12:31:09 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-18 12:30:59 ----D---- C:\WINDOWS\system32\drivers
2016-03-18 12:30:57 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-18 12:27:37 ----D---- C:\WINDOWS\system32\restore
2016-03-18 12:25:58 ----D---- C:\WINDOWS\system32\Tasks
2016-03-18 12:17:13 ----D---- C:\WINDOWS\OCR
2016-03-18 12:15:10 ----SD---- C:\ProgramData\Microsoft
2016-03-18 12:01:19 ----D---- C:\WINDOWS\rescache
2016-03-18 12:00:13 ----D---- C:\WINDOWS\system32\wbem
2016-03-18 12:00:05 ----D---- C:\Program Files\Windows NT
2016-03-18 12:00:03 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-18 11:59:53 ----D---- C:\WINDOWS\debug
2016-03-18 11:59:43 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-18 11:59:23 ----D---- C:\WINDOWS\Registration
2016-03-18 11:58:50 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-18 11:58:45 ----RSD---- C:\WINDOWS\Media
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-18 11:54:46 ----D---- C:\WINDOWS\Tasks
2016-03-18 11:53:36 ----D---- C:\WINDOWS\twain_32
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-18 11:53:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\SPReview
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\NDF
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\migration
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\it-IT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\IME
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\EventProviders
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\es-ES
2016-03-18 11:53:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\el-GR
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\de-DE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\da-DK
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-18 11:52:44 ----D---- C:\WINDOWS\schemas
2016-03-18 11:52:44 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-18 11:52:40 ----D---- C:\WINDOWS\ehome
2016-03-18 11:52:39 ----RD---- C:\Users
2016-03-18 11:52:39 ----HD---- C:\ProgramData
2016-03-18 11:52:34 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-03-18 11:52:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-18 11:52:33 ----SHD---- C:\Program Files\Windows Sidebar
2016-03-18 11:52:33 ----D---- C:\Program Files\Windows Mail
2016-03-18 11:52:33 ----D---- C:\Program Files (x86)\Common Files
2016-03-18 11:52:33 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-18 11:52:30 ----D---- C:\Program Files\Microsoft Games
2016-03-18 11:52:30 ----D---- C:\Program Files\DVD Maker
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files
2016-03-18 11:51:56 ----D---- C:\WINDOWS\system32\Recovery
2016-03-18 11:50:15 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-18 11:48:38 ----D---- C:\WINDOWS\Help
2016-03-18 11:48:07 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 11:43:23 ----RSD---- C:\WINDOWS\Fonts
2016-03-18 11:43:23 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-18 11:43:23 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Boot
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\appraiser
2016-03-18 11:43:23 ----D---- C:\WINDOWS\bcastdvr
2016-03-18 11:43:23 ----D---- C:\WINDOWS\AppPatch
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Media Player
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Journal
2016-03-18 11:43:23 ----D---- C:\Program Files\Internet Explorer
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-03-18 11:37:45 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-03-18 11:37:44 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-03-18 11:37:43 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-03-18 11:37:39 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-03-18 11:37:38 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-03-18 11:37:37 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-03-18 11:37:36 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-03-18 11:19:14 ----HD---- C:\$WINDOWS.~BT
2016-03-16 18:58:24 ----D---- C:\Users\Vendeta\AppData\Roaming\vlc
2016-03-09 20:02:51 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 19:57:49 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-08 19:02:59 ----D---- C:\ProgramData\CanonIJPLM
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 14:53:37 ----D---- C:\Program Files (x86)\IObit
2016-03-06 14:53:32 ----D---- C:\ProgramData\MFAData
2016-03-06 14:51:32 ----D---- C:\ProgramData\IObit
2016-03-06 14:50:53 ----D---- C:\ProgramData\Avg
2016-03-06 14:50:15 ----HD---- C:\$AVG
2016-02-25 08:52:33 ----D---- C:\Program Files (x86)\Steam
2016-02-25 08:44:12 ----D---- C:\Users\Vendeta\AppData\Roaming\DAEMON Tools Pro
2016-02-25 08:27:11 ----D---- C:\ProgramData\ProductData
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2015-12-26 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2015-12-26 43720]
R1 dtsoftbus01;@oem27.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2016-01-10 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-26 26528]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2014-10-10 158968]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdiox64;@oem18.inf,%amdio.SvcDesc%;AMD IO Driver; C:\WINDOWS\System32\drivers\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-18 4739328]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-03-18 175616]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-19 12907704]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-10-13 19600]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-10-13 38032]
R3 rt640x64;@oem36.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-03-18 936192]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-01-13 56448]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RTL8167;@oem24.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2015-12-26 1026304]
S3 RTL8169;Realtek 8169 NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-05-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-10-13 1148560]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-03-18 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-10-13 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-10-13 21833360]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-10-13 933168]
R2 OneSyncSvc_27c45a3;Hostitel synchronizace_27c45a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-10-13 416432]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3607e;Hostitel synchronizace_3607e; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_27c45a3;Služba zasílání zpráv_27c45a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_27c45a3;Data kontaktů_27c45a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_27c45a3;Úložiště uživatelských dat_27c45a3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vendeta at 2016-03-20 08:39:23
Microsoft Windows 10 Home
System drive C: has 676 GB (90%) free of 753 GB
Total RAM: 8146 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:39:27, on 20.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Vendeta\Downloads\AdwCleaner.exe
C:\Program Files\trend micro\Vendeta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8013
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: AVG Web TuneUp - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Web TuneUp\4.2.6.552\AVG Web TuneUp.dll (file missing)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater40.2.6 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8598 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\loggingserver.exe" 72648 "C:\ProgramData\AVG Secure Search\Logger\logger.properties"
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {df68ca22-6caf-4df9-ae410dd9308a8024}
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 58f6e5ad-48e5-414e-94e9-6686d1c11c60 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\msdtc.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{48DA6741-1BF0-4A44-8325-293086C79077}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\browser_broker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Windows\System32\DataExchangeHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:3620 CREDAT:206099 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:3620 CREDAT:206120 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:3620 CREDAT:337182 EDGEHOST /prefetch:6
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100047_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100047 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe48_ Global\UsGthrCtrlFltPipeMssGthrPipe48 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Vendeta\Downloads\FRST64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Users\Vendeta\Downloads\AdwCleaner.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Users\Vendeta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 209504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Web TuneUp - C:\Program Files (x86)\AVG Web TuneUp\4.2.6.552\AVG Web TuneUp.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 6141528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 4445272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-18 8783616]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5595336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-18 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu]
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-01-17 1284680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe /MONITOR []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 08:39:23 ----D---- C:\rsit
2016-03-20 08:39:23 ----D---- C:\Program Files\trend micro
2016-03-20 08:38:26 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 08:37:39 ----D---- C:\FRST
2016-03-20 08:18:52 ----HD---- C:\OneDriveTemp
2016-03-19 10:07:12 ----D---- C:\WINDOWS\system32\SleepStudy
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\drivers\rt640x64.sys
2016-03-18 12:28:52 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosade.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sltech64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slprp64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slcnt64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2016-03-18 12:28:46 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMUI.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMLimiter.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMHVS.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ_Voice.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMClariFi.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CX64APO.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 12:00:03 ----SHD---- C:\Recovery
2016-03-18 11:58:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-03-18 11:51:18 ----SD---- C:\Users\Vendeta\AppData\Roaming\Microsoft
2016-03-18 11:50:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 11:50:37 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-18 11:49:02 ----D---- C:\WINDOWS\system32\DAX2
2016-03-18 11:48:45 ----D---- C:\Program Files\Realtek
2016-03-18 11:48:44 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-18 11:48:42 ----D---- C:\ProgramData\NVIDIA
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-18 11:48:23 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-18 11:48:17 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-18 11:47:36 ----D---- C:\WINDOWS\Prefetch
2016-03-18 11:46:59 ----ASH---- C:\swapfile.sys
2016-03-18 11:46:02 ----DC---- C:\WINDOWS\Panther
2016-03-18 11:43:39 ----D---- C:\Windows.old
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\msmq
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\BestPractices
2016-03-18 11:37:52 ----D---- C:\Program Files\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files\MSBuild
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\MSBuild
2016-03-18 11:37:52 ----D---- C:\inetpub
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-18 11:37:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:54 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-09 10:18:44 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-03-09 10:18:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2016-03-09 10:18:42 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2016-03-06 15:59:40 ----D---- C:\Program Files\Common Files\AV
2016-03-06 15:01:22 ----A---- C:\WINDOWS\ntbtlog.txt
2016-03-06 14:58:03 ----D---- C:\ProgramData\ESET
2016-03-06 14:58:03 ----D---- C:\Program Files\ESET
2016-03-06 14:40:03 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2016-03-06 14:40:02 ----D---- C:\Program Files\VS Revo Group
2016-03-06 08:52:37 ----D---- C:\Users\Vendeta\AppData\Roaming\PortForward.com
2016-03-06 08:52:37 ----D---- C:\Program Files (x86)\Portforward
2016-02-27 15:57:47 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SETB3F4.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SET92F9.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SET4E7E.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\SET4986.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\SET34F4.tmp
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtvienna.dat
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtkSSTsetting.dat
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\Rovio
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\NVIDIA
2016-02-22 17:17:22 ----D---- C:\Games
2016-02-22 16:31:45 ----D---- C:\ProgramData\Steam
======List of files/folders modified in the last 1 month======
2016-03-20 08:39:23 ----RD---- C:\Program Files
2016-03-20 08:39:18 ----D---- C:\WINDOWS\Temp
2016-03-20 08:39:11 ----D---- C:\Windows
2016-03-20 08:38:26 ----RD---- C:\Program Files (x86)
2016-03-20 08:18:28 ----D---- C:\WINDOWS\system32\sru
2016-03-19 18:39:23 ----D---- C:\Users\Vendeta\AppData\Roaming\uTorrent
2016-03-19 17:40:50 ----D---- C:\WINDOWS\system32\config
2016-03-19 17:38:34 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-19 16:31:56 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 10:07:12 ----D---- C:\WINDOWS\System32
2016-03-19 10:06:26 ----D---- C:\WINDOWS\Logs
2016-03-19 09:40:14 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-19 09:34:34 ----D---- C:\WINDOWS\INF
2016-03-19 09:32:19 ----D---- C:\WINDOWS\appcompat
2016-03-19 09:31:02 ----D---- C:\WINDOWS\system32\WDI
2016-03-18 18:45:05 ----RD---- C:\WINDOWS\assembly
2016-03-18 15:44:51 ----HD---- C:\Program Files\WindowsApps
2016-03-18 15:18:30 ----D---- C:\WINDOWS\WinSxS
2016-03-18 15:18:30 ----D---- C:\WINDOWS\SysWOW64
2016-03-18 15:18:30 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 15:18:14 ----SHD---- C:\WINDOWS\Installer
2016-03-18 12:33:20 ----SHD---- C:\System Volume Information
2016-03-18 12:31:09 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-18 12:30:59 ----D---- C:\WINDOWS\system32\drivers
2016-03-18 12:30:57 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-18 12:27:37 ----D---- C:\WINDOWS\system32\restore
2016-03-18 12:25:58 ----D---- C:\WINDOWS\system32\Tasks
2016-03-18 12:17:13 ----D---- C:\WINDOWS\OCR
2016-03-18 12:15:10 ----SD---- C:\ProgramData\Microsoft
2016-03-18 12:01:19 ----D---- C:\WINDOWS\rescache
2016-03-18 12:00:13 ----D---- C:\WINDOWS\system32\wbem
2016-03-18 12:00:05 ----D---- C:\Program Files\Windows NT
2016-03-18 12:00:03 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-18 11:59:53 ----D---- C:\WINDOWS\debug
2016-03-18 11:59:43 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-18 11:59:23 ----D---- C:\WINDOWS\Registration
2016-03-18 11:58:50 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-18 11:58:45 ----RSD---- C:\WINDOWS\Media
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-18 11:54:46 ----D---- C:\WINDOWS\Tasks
2016-03-18 11:53:36 ----D---- C:\WINDOWS\twain_32
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-18 11:53:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\SPReview
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\NDF
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\migration
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\it-IT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\IME
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\EventProviders
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\es-ES
2016-03-18 11:53:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\el-GR
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\de-DE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\da-DK
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-18 11:52:44 ----D---- C:\WINDOWS\schemas
2016-03-18 11:52:44 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-18 11:52:40 ----D---- C:\WINDOWS\ehome
2016-03-18 11:52:39 ----RD---- C:\Users
2016-03-18 11:52:39 ----HD---- C:\ProgramData
2016-03-18 11:52:34 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-03-18 11:52:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-18 11:52:33 ----SHD---- C:\Program Files\Windows Sidebar
2016-03-18 11:52:33 ----D---- C:\Program Files\Windows Mail
2016-03-18 11:52:33 ----D---- C:\Program Files (x86)\Common Files
2016-03-18 11:52:33 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-18 11:52:30 ----D---- C:\Program Files\Microsoft Games
2016-03-18 11:52:30 ----D---- C:\Program Files\DVD Maker
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files
2016-03-18 11:51:56 ----D---- C:\WINDOWS\system32\Recovery
2016-03-18 11:50:15 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-18 11:48:38 ----D---- C:\WINDOWS\Help
2016-03-18 11:48:07 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 11:43:23 ----RSD---- C:\WINDOWS\Fonts
2016-03-18 11:43:23 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-18 11:43:23 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Boot
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\appraiser
2016-03-18 11:43:23 ----D---- C:\WINDOWS\bcastdvr
2016-03-18 11:43:23 ----D---- C:\WINDOWS\AppPatch
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Media Player
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Journal
2016-03-18 11:43:23 ----D---- C:\Program Files\Internet Explorer
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-03-18 11:37:45 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-03-18 11:37:44 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-03-18 11:37:43 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-03-18 11:37:39 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-03-18 11:37:38 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-03-18 11:37:37 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-03-18 11:37:36 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-03-18 11:19:14 ----HD---- C:\$WINDOWS.~BT
2016-03-16 18:58:24 ----D---- C:\Users\Vendeta\AppData\Roaming\vlc
2016-03-09 20:02:51 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 19:57:49 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-08 19:02:59 ----D---- C:\ProgramData\CanonIJPLM
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 14:53:37 ----D---- C:\Program Files (x86)\IObit
2016-03-06 14:53:32 ----D---- C:\ProgramData\MFAData
2016-03-06 14:51:32 ----D---- C:\ProgramData\IObit
2016-03-06 14:50:53 ----D---- C:\ProgramData\Avg
2016-03-06 14:50:15 ----HD---- C:\$AVG
2016-02-25 08:52:33 ----D---- C:\Program Files (x86)\Steam
2016-02-25 08:44:12 ----D---- C:\Users\Vendeta\AppData\Roaming\DAEMON Tools Pro
2016-02-25 08:27:11 ----D---- C:\ProgramData\ProductData
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2015-12-26 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2015-12-26 43720]
R1 dtsoftbus01;@oem27.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2016-01-10 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-26 26528]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2014-10-10 158968]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdiox64;@oem18.inf,%amdio.SvcDesc%;AMD IO Driver; C:\WINDOWS\System32\drivers\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-18 4739328]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-03-18 175616]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-19 12907704]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-10-13 19600]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-10-13 38032]
R3 rt640x64;@oem36.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-03-18 936192]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-01-13 56448]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RTL8167;@oem24.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2015-12-26 1026304]
S3 RTL8169;Realtek 8169 NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-05-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-10-13 1148560]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-03-18 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-10-13 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-10-13 21833360]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-10-13 933168]
R2 OneSyncSvc_27c45a3;Hostitel synchronizace_27c45a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-10-13 416432]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3607e;Hostitel synchronizace_3607e; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_27c45a3;Služba zasílání zpráv_27c45a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_27c45a3;Data kontaktů_27c45a3; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_27c45a3;Úložiště uživatelských dat_27c45a3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu prosím
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
zelvalenka
- Návštěvník

- Příspěvky: 54
- Registrován: 24 říj 2015 16:54
Re: Kontrola logu prosím
# AdwCleaner v5.102 - Logfile created 20/03/2016 at 08:41:37
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Vendeta - LUCIFER
# Running from : C:\Users\Vendeta\Downloads\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : vToolbarUpdater40.2.6
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\DriverToolkit
[-] Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
[-] Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
[-] Folder Deleted : C:\ProgramData\AVG Secure Search
[-] Folder Deleted : C:\ProgramData\AVG Security Toolbar
[-] Folder Deleted : C:\Users\Vendeta\AppData\Local\DriverToolkit
[-] Folder Deleted : C:\Users\Vendeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\chfdnecihphmhljaaejmgoiahnihplgn
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKCU\Software\DriverToolkit
[-] Key Deleted : HKCU\Software\AVG Web TuneUp
[-] Key Deleted : HKLM\SOFTWARE\AVG Web TuneUp
[-] Key Deleted : HKLM\SOFTWARE\AVG Tuneup
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Web TuneUp
[-] Key Deleted : [x64] HKLM\SOFTWARE\AVG Web TuneUp
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
***** [ Web browsers ] *****
[-] [C:\Users\Vendeta\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : chfdnecihphmhljaaejmgoiahnihplgn
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [3488 bytes] - [20/03/2016 08:41:37]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [3739 bytes] - [20/03/2016 08:38:36]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [3674 bytes] ##########
Již proveden clean
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Vendeta - LUCIFER
# Running from : C:\Users\Vendeta\Downloads\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : vToolbarUpdater40.2.6
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\DriverToolkit
[-] Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
[-] Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
[-] Folder Deleted : C:\ProgramData\AVG Secure Search
[-] Folder Deleted : C:\ProgramData\AVG Security Toolbar
[-] Folder Deleted : C:\Users\Vendeta\AppData\Local\DriverToolkit
[-] Folder Deleted : C:\Users\Vendeta\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\chfdnecihphmhljaaejmgoiahnihplgn
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key Deleted : HKCU\Software\DriverToolkit
[-] Key Deleted : HKCU\Software\AVG Web TuneUp
[-] Key Deleted : HKLM\SOFTWARE\AVG Web TuneUp
[-] Key Deleted : HKLM\SOFTWARE\AVG Tuneup
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Web TuneUp
[-] Key Deleted : [x64] HKLM\SOFTWARE\AVG Web TuneUp
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
***** [ Web browsers ] *****
[-] [C:\Users\Vendeta\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : chfdnecihphmhljaaejmgoiahnihplgn
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [3488 bytes] - [20/03/2016 08:41:37]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [3739 bytes] - [20/03/2016 08:38:36]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [3674 bytes] ##########
Již proveden clean
-
zelvalenka
- Návštěvník

- Příspěvky: 54
- Registrován: 24 říj 2015 16:54
Re: Kontrola logu prosím
# AdwCleaner v5.102 - Logfile created 20/03/2016 at 12:12:19
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Vendeta - LUCIFER
# Running from : C:\Users\Vendeta\Downloads\AdwCleaner (1).exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [3785 bytes] - [20/03/2016 08:41:37]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C2].txt - [783 bytes] - [20/03/2016 12:12:19]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [3739 bytes] - [20/03/2016 08:38:36]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S3].txt - [977 bytes] - [20/03/2016 12:11:08]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C2].txt - [1060 bytes] ##########
Opětovné projetí PC programem
# Updated 13/03/2016 by Xplode
# Database : 2016-03-20.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Vendeta - LUCIFER
# Running from : C:\Users\Vendeta\Downloads\AdwCleaner (1).exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [3785 bytes] - [20/03/2016 08:41:37]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[C2].txt - [783 bytes] - [20/03/2016 12:12:19]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [3739 bytes] - [20/03/2016 08:38:36]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S3].txt - [977 bytes] - [20/03/2016 12:11:08]
########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C2].txt - [1060 bytes] ##########
Opětovné projetí PC programem
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu prosím
Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
zelvalenka
- Návštěvník

- Příspěvky: 54
- Registrován: 24 říj 2015 16:54
Re: Kontrola logu prosím
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vendeta at 2016-03-20 18:13:30
Microsoft Windows 10 Home
System drive C: has 670 GB (89%) free of 753 GB
Total RAM: 8146 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:13:32, on 20.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\trend micro\Vendeta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8013
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8472 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 58f6e5ad-48e5-414e-94e9-6686d1c11c60 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {e81d2262-b88c-4400-ae69710d88b81f00}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\browser_broker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:1752 CREDAT:140545 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:1752 CREDAT:271617 EDGEHOST /prefetch:6
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 612 624 632 8192 628
"C:\Users\Vendeta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 209504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 6141528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 4445272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-18 8783616]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5595336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-18 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu]
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-01-17 1284680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe /MONITOR []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 08:46:45 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-03-20 08:46:32 ----D---- C:\ProgramData\Malwarebytes
2016-03-20 08:46:32 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-03-20 08:39:23 ----D---- C:\rsit
2016-03-20 08:39:23 ----D---- C:\Program Files\trend micro
2016-03-20 08:38:26 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 08:37:39 ----D---- C:\FRST
2016-03-19 10:07:12 ----D---- C:\WINDOWS\system32\SleepStudy
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\drivers\rt640x64.sys
2016-03-18 12:28:52 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosade.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sltech64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slprp64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slcnt64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2016-03-18 12:28:46 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMUI.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMLimiter.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMHVS.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ_Voice.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMClariFi.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CX64APO.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 12:00:03 ----SHD---- C:\Recovery
2016-03-18 11:58:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-03-18 11:51:18 ----SD---- C:\Users\Vendeta\AppData\Roaming\Microsoft
2016-03-18 11:50:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 11:50:37 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-18 11:49:02 ----D---- C:\WINDOWS\system32\DAX2
2016-03-18 11:48:45 ----D---- C:\Program Files\Realtek
2016-03-18 11:48:44 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-18 11:48:42 ----D---- C:\ProgramData\NVIDIA
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-18 11:48:23 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-18 11:48:17 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-18 11:47:36 ----D---- C:\WINDOWS\Prefetch
2016-03-18 11:46:59 ----ASH---- C:\swapfile.sys
2016-03-18 11:46:02 ----DC---- C:\WINDOWS\Panther
2016-03-18 11:43:39 ----D---- C:\Windows.old
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\msmq
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\BestPractices
2016-03-18 11:37:52 ----D---- C:\Program Files\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files\MSBuild
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\MSBuild
2016-03-18 11:37:52 ----D---- C:\inetpub
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-18 11:37:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:54 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-09 10:18:44 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-03-09 10:18:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2016-03-09 10:18:42 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2016-03-06 15:59:40 ----D---- C:\Program Files\Common Files\AV
2016-03-06 15:01:22 ----A---- C:\WINDOWS\ntbtlog.txt
2016-03-06 14:58:03 ----D---- C:\ProgramData\ESET
2016-03-06 14:58:03 ----D---- C:\Program Files\ESET
2016-03-06 14:40:03 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2016-03-06 14:40:02 ----D---- C:\Program Files\VS Revo Group
2016-03-06 08:52:37 ----D---- C:\Users\Vendeta\AppData\Roaming\PortForward.com
2016-03-06 08:52:37 ----D---- C:\Program Files (x86)\Portforward
2016-02-27 15:57:47 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtvienna.dat
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtkSSTsetting.dat
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\Rovio
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\NVIDIA
2016-02-22 17:17:22 ----D---- C:\Games
2016-02-22 16:31:45 ----D---- C:\ProgramData\Steam
======List of files/folders modified in the last 1 month======
2016-03-20 18:12:39 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-20 18:12:16 ----D---- C:\WINDOWS\Temp
2016-03-20 17:45:00 ----D---- C:\WINDOWS\system32\sru
2016-03-20 16:44:47 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 12:19:23 ----D---- C:\WINDOWS\System32
2016-03-20 12:19:22 ----D---- C:\WINDOWS\INF
2016-03-20 08:48:17 ----D---- C:\WINDOWS\system32\drivers
2016-03-20 08:48:08 ----D---- C:\Users\Vendeta\AppData\Roaming\uTorrent
2016-03-20 08:46:32 ----RD---- C:\Program Files (x86)
2016-03-20 08:46:32 ----HD---- C:\ProgramData
2016-03-20 08:41:48 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-20 08:41:38 ----D---- C:\Program Files\Common Files
2016-03-20 08:41:38 ----D---- C:\Program Files (x86)\Common Files
2016-03-20 08:40:08 ----D---- C:\Windows
2016-03-20 08:39:23 ----RD---- C:\Program Files
2016-03-19 17:40:50 ----D---- C:\WINDOWS\system32\config
2016-03-19 16:31:56 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 10:06:26 ----D---- C:\WINDOWS\Logs
2016-03-19 09:40:14 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-19 09:32:19 ----D---- C:\WINDOWS\appcompat
2016-03-19 09:31:02 ----D---- C:\WINDOWS\system32\WDI
2016-03-18 18:45:05 ----RD---- C:\WINDOWS\assembly
2016-03-18 15:44:51 ----HD---- C:\Program Files\WindowsApps
2016-03-18 15:18:30 ----D---- C:\WINDOWS\WinSxS
2016-03-18 15:18:30 ----D---- C:\WINDOWS\SysWOW64
2016-03-18 15:18:30 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 15:18:14 ----SHD---- C:\WINDOWS\Installer
2016-03-18 12:33:20 ----SHD---- C:\System Volume Information
2016-03-18 12:31:09 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-18 12:27:37 ----D---- C:\WINDOWS\system32\restore
2016-03-18 12:17:13 ----D---- C:\WINDOWS\OCR
2016-03-18 12:15:10 ----SD---- C:\ProgramData\Microsoft
2016-03-18 12:01:19 ----D---- C:\WINDOWS\rescache
2016-03-18 12:00:13 ----D---- C:\WINDOWS\system32\wbem
2016-03-18 12:00:05 ----D---- C:\Program Files\Windows NT
2016-03-18 12:00:03 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-18 11:59:53 ----D---- C:\WINDOWS\debug
2016-03-18 11:59:43 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-18 11:59:23 ----D---- C:\WINDOWS\Registration
2016-03-18 11:58:50 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-18 11:58:45 ----RSD---- C:\WINDOWS\Media
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-18 11:54:46 ----D---- C:\WINDOWS\Tasks
2016-03-18 11:53:36 ----D---- C:\WINDOWS\twain_32
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-18 11:53:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\SPReview
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\NDF
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\migration
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\it-IT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\IME
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\EventProviders
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\es-ES
2016-03-18 11:53:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\el-GR
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\de-DE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\da-DK
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-18 11:52:44 ----D---- C:\WINDOWS\schemas
2016-03-18 11:52:44 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-18 11:52:40 ----D---- C:\WINDOWS\ehome
2016-03-18 11:52:39 ----RD---- C:\Users
2016-03-18 11:52:34 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-03-18 11:52:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-18 11:52:33 ----SHD---- C:\Program Files\Windows Sidebar
2016-03-18 11:52:33 ----D---- C:\Program Files\Windows Mail
2016-03-18 11:52:33 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-18 11:52:30 ----D---- C:\Program Files\Microsoft Games
2016-03-18 11:52:30 ----D---- C:\Program Files\DVD Maker
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-18 11:51:56 ----D---- C:\WINDOWS\system32\Recovery
2016-03-18 11:50:15 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-18 11:48:38 ----D---- C:\WINDOWS\Help
2016-03-18 11:48:07 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 11:43:23 ----RSD---- C:\WINDOWS\Fonts
2016-03-18 11:43:23 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-18 11:43:23 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Boot
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\appraiser
2016-03-18 11:43:23 ----D---- C:\WINDOWS\bcastdvr
2016-03-18 11:43:23 ----D---- C:\WINDOWS\AppPatch
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Media Player
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Journal
2016-03-18 11:43:23 ----D---- C:\Program Files\Internet Explorer
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-03-18 11:37:45 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-03-18 11:37:44 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-03-18 11:37:43 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-03-18 11:37:39 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-03-18 11:37:38 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-03-18 11:37:37 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-03-18 11:37:36 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-03-18 11:19:14 ----HD---- C:\$WINDOWS.~BT
2016-03-16 18:58:24 ----D---- C:\Users\Vendeta\AppData\Roaming\vlc
2016-03-09 20:02:51 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 19:57:49 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-08 19:02:59 ----D---- C:\ProgramData\CanonIJPLM
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 14:53:37 ----D---- C:\Program Files (x86)\IObit
2016-03-06 14:53:32 ----D---- C:\ProgramData\MFAData
2016-03-06 14:51:32 ----D---- C:\ProgramData\IObit
2016-03-06 14:50:53 ----D---- C:\ProgramData\Avg
2016-03-06 14:50:15 ----HD---- C:\$AVG
2016-02-25 08:52:33 ----D---- C:\Program Files (x86)\Steam
2016-02-25 08:44:12 ----D---- C:\Users\Vendeta\AppData\Roaming\DAEMON Tools Pro
2016-02-25 08:27:11 ----D---- C:\ProgramData\ProductData
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2015-12-26 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2015-12-26 43720]
R1 dtsoftbus01;@oem27.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2016-01-10 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-26 26528]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2014-10-10 158968]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdiox64;@oem18.inf,%amdio.SvcDesc%;AMD IO Driver; C:\WINDOWS\System32\drivers\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-18 4739328]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-03-20 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-03-18 175616]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-19 12907704]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-10-13 19600]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-10-13 38032]
R3 rt640x64;@oem36.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-03-18 936192]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RTL8167;@oem24.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2015-12-26 1026304]
S3 RTL8169;Realtek 8169 NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-05-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-10-13 1148560]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-03-18 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-10-13 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-10-13 21833360]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-10-13 933168]
R2 OneSyncSvc_155a71;Hostitel synchronizace_155a71; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-10-13 416432]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3607e;Hostitel synchronizace_3607e; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_155a71;Služba zasílání zpráv_155a71; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_155a71;Data kontaktů_155a71; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_155a71;Úložiště uživatelských dat_155a71; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Run by Vendeta at 2016-03-20 18:13:30
Microsoft Windows 10 Home
System drive C: has 670 GB (89%) free of 753 GB
Total RAM: 8146 MB (77% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:13:32, on 20.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\trend micro\Vendeta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8013
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8472 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 58f6e5ad-48e5-414e-94e9-6686d1c11c60 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {e81d2262-b88c-4400-ae69710d88b81f00}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\browser_broker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:1752 CREDAT:140545 EDGEHOST /prefetch:6
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe" SCODEF:1752 CREDAT:271617 EDGEHOST /prefetch:6
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2677008693-2281330892-3098654110-100011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 612 624 632 8192 628
"C:\Users\Vendeta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 209504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 6141528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 4445272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-18 8783616]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5595336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-18 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu]
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-01-17 1284680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe /MONITOR []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 08:46:45 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-03-20 08:46:32 ----D---- C:\ProgramData\Malwarebytes
2016-03-20 08:46:32 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-03-20 08:39:23 ----D---- C:\rsit
2016-03-20 08:39:23 ----D---- C:\Program Files\trend micro
2016-03-20 08:38:26 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 08:37:39 ----D---- C:\FRST
2016-03-19 10:07:12 ----D---- C:\WINDOWS\system32\SleepStudy
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\drivers\rt640x64.sys
2016-03-18 12:28:52 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosade.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sltech64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slprp64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slcnt64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2016-03-18 12:28:46 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMUI.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMLimiter.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMHVS.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ_Voice.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMClariFi.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CX64APO.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 12:00:03 ----SHD---- C:\Recovery
2016-03-18 11:58:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-03-18 11:51:18 ----SD---- C:\Users\Vendeta\AppData\Roaming\Microsoft
2016-03-18 11:50:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 11:50:37 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-18 11:49:02 ----D---- C:\WINDOWS\system32\DAX2
2016-03-18 11:48:45 ----D---- C:\Program Files\Realtek
2016-03-18 11:48:44 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-18 11:48:42 ----D---- C:\ProgramData\NVIDIA
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-18 11:48:23 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-18 11:48:17 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-18 11:47:36 ----D---- C:\WINDOWS\Prefetch
2016-03-18 11:46:59 ----ASH---- C:\swapfile.sys
2016-03-18 11:46:02 ----DC---- C:\WINDOWS\Panther
2016-03-18 11:43:39 ----D---- C:\Windows.old
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\msmq
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\BestPractices
2016-03-18 11:37:52 ----D---- C:\Program Files\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files\MSBuild
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\MSBuild
2016-03-18 11:37:52 ----D---- C:\inetpub
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-18 11:37:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:54 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-09 10:18:44 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-03-09 10:18:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2016-03-09 10:18:42 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2016-03-06 15:59:40 ----D---- C:\Program Files\Common Files\AV
2016-03-06 15:01:22 ----A---- C:\WINDOWS\ntbtlog.txt
2016-03-06 14:58:03 ----D---- C:\ProgramData\ESET
2016-03-06 14:58:03 ----D---- C:\Program Files\ESET
2016-03-06 14:40:03 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2016-03-06 14:40:02 ----D---- C:\Program Files\VS Revo Group
2016-03-06 08:52:37 ----D---- C:\Users\Vendeta\AppData\Roaming\PortForward.com
2016-03-06 08:52:37 ----D---- C:\Program Files (x86)\Portforward
2016-02-27 15:57:47 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtvienna.dat
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtkSSTsetting.dat
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\Rovio
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\NVIDIA
2016-02-22 17:17:22 ----D---- C:\Games
2016-02-22 16:31:45 ----D---- C:\ProgramData\Steam
======List of files/folders modified in the last 1 month======
2016-03-20 18:12:39 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-20 18:12:16 ----D---- C:\WINDOWS\Temp
2016-03-20 17:45:00 ----D---- C:\WINDOWS\system32\sru
2016-03-20 16:44:47 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 12:19:23 ----D---- C:\WINDOWS\System32
2016-03-20 12:19:22 ----D---- C:\WINDOWS\INF
2016-03-20 08:48:17 ----D---- C:\WINDOWS\system32\drivers
2016-03-20 08:48:08 ----D---- C:\Users\Vendeta\AppData\Roaming\uTorrent
2016-03-20 08:46:32 ----RD---- C:\Program Files (x86)
2016-03-20 08:46:32 ----HD---- C:\ProgramData
2016-03-20 08:41:48 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-20 08:41:38 ----D---- C:\Program Files\Common Files
2016-03-20 08:41:38 ----D---- C:\Program Files (x86)\Common Files
2016-03-20 08:40:08 ----D---- C:\Windows
2016-03-20 08:39:23 ----RD---- C:\Program Files
2016-03-19 17:40:50 ----D---- C:\WINDOWS\system32\config
2016-03-19 16:31:56 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 10:06:26 ----D---- C:\WINDOWS\Logs
2016-03-19 09:40:14 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-19 09:32:19 ----D---- C:\WINDOWS\appcompat
2016-03-19 09:31:02 ----D---- C:\WINDOWS\system32\WDI
2016-03-18 18:45:05 ----RD---- C:\WINDOWS\assembly
2016-03-18 15:44:51 ----HD---- C:\Program Files\WindowsApps
2016-03-18 15:18:30 ----D---- C:\WINDOWS\WinSxS
2016-03-18 15:18:30 ----D---- C:\WINDOWS\SysWOW64
2016-03-18 15:18:30 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 15:18:14 ----SHD---- C:\WINDOWS\Installer
2016-03-18 12:33:20 ----SHD---- C:\System Volume Information
2016-03-18 12:31:09 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-18 12:27:37 ----D---- C:\WINDOWS\system32\restore
2016-03-18 12:17:13 ----D---- C:\WINDOWS\OCR
2016-03-18 12:15:10 ----SD---- C:\ProgramData\Microsoft
2016-03-18 12:01:19 ----D---- C:\WINDOWS\rescache
2016-03-18 12:00:13 ----D---- C:\WINDOWS\system32\wbem
2016-03-18 12:00:05 ----D---- C:\Program Files\Windows NT
2016-03-18 12:00:03 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-18 11:59:53 ----D---- C:\WINDOWS\debug
2016-03-18 11:59:43 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-18 11:59:23 ----D---- C:\WINDOWS\Registration
2016-03-18 11:58:50 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-18 11:58:45 ----RSD---- C:\WINDOWS\Media
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-18 11:54:46 ----D---- C:\WINDOWS\Tasks
2016-03-18 11:53:36 ----D---- C:\WINDOWS\twain_32
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-18 11:53:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\SPReview
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\NDF
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\migration
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\it-IT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\IME
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\EventProviders
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\es-ES
2016-03-18 11:53:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\el-GR
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\de-DE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\da-DK
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-18 11:52:44 ----D---- C:\WINDOWS\schemas
2016-03-18 11:52:44 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-18 11:52:40 ----D---- C:\WINDOWS\ehome
2016-03-18 11:52:39 ----RD---- C:\Users
2016-03-18 11:52:34 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-03-18 11:52:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-18 11:52:33 ----SHD---- C:\Program Files\Windows Sidebar
2016-03-18 11:52:33 ----D---- C:\Program Files\Windows Mail
2016-03-18 11:52:33 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-18 11:52:30 ----D---- C:\Program Files\Microsoft Games
2016-03-18 11:52:30 ----D---- C:\Program Files\DVD Maker
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-18 11:51:56 ----D---- C:\WINDOWS\system32\Recovery
2016-03-18 11:50:15 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-18 11:48:38 ----D---- C:\WINDOWS\Help
2016-03-18 11:48:07 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 11:43:23 ----RSD---- C:\WINDOWS\Fonts
2016-03-18 11:43:23 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-18 11:43:23 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Boot
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\appraiser
2016-03-18 11:43:23 ----D---- C:\WINDOWS\bcastdvr
2016-03-18 11:43:23 ----D---- C:\WINDOWS\AppPatch
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Media Player
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Journal
2016-03-18 11:43:23 ----D---- C:\Program Files\Internet Explorer
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-03-18 11:37:45 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-03-18 11:37:44 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-03-18 11:37:43 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-03-18 11:37:39 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-03-18 11:37:38 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-03-18 11:37:37 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-03-18 11:37:36 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-03-18 11:19:14 ----HD---- C:\$WINDOWS.~BT
2016-03-16 18:58:24 ----D---- C:\Users\Vendeta\AppData\Roaming\vlc
2016-03-09 20:02:51 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 19:57:49 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-08 19:02:59 ----D---- C:\ProgramData\CanonIJPLM
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 14:53:37 ----D---- C:\Program Files (x86)\IObit
2016-03-06 14:53:32 ----D---- C:\ProgramData\MFAData
2016-03-06 14:51:32 ----D---- C:\ProgramData\IObit
2016-03-06 14:50:53 ----D---- C:\ProgramData\Avg
2016-03-06 14:50:15 ----HD---- C:\$AVG
2016-02-25 08:52:33 ----D---- C:\Program Files (x86)\Steam
2016-02-25 08:44:12 ----D---- C:\Users\Vendeta\AppData\Roaming\DAEMON Tools Pro
2016-02-25 08:27:11 ----D---- C:\ProgramData\ProductData
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2015-12-26 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2015-12-26 43720]
R1 dtsoftbus01;@oem27.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2016-01-10 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-26 26528]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2014-10-10 158968]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdiox64;@oem18.inf,%amdio.SvcDesc%;AMD IO Driver; C:\WINDOWS\System32\drivers\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-18 4739328]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-03-20 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-03-18 175616]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-19 12907704]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-10-13 19600]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-10-13 38032]
R3 rt640x64;@oem36.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-03-18 936192]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RTL8167;@oem24.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2015-12-26 1026304]
S3 RTL8169;Realtek 8169 NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-05-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-10-13 1148560]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-03-18 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-10-13 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-10-13 21833360]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-10-13 933168]
R2 OneSyncSvc_155a71;Hostitel synchronizace_155a71; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-10-13 416432]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3607e;Hostitel synchronizace_3607e; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_155a71;Služba zasílání zpráv_155a71; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_155a71;Data kontaktů_155a71; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_155a71;Úložiště uživatelských dat_155a71; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu prosím
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
zelvalenka
- Návštěvník

- Příspěvky: 54
- Registrován: 24 říj 2015 16:54
Re: Kontrola logu prosím
Logfile of random's system information tool 1.10 (written by random/random)
Run by Vendeta at 2016-03-20 19:48:07
Microsoft Windows 10 Home
System drive C: has 670 GB (89%) free of 753 GB
Total RAM: 8146 MB (82% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:48:11, on 20.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\trend micro\Vendeta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8013
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8531 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 58f6e5ad-48e5-414e-94e9-6686d1c11c60 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {5bace981-1504-43b7-a60948bb7ff2cd17}
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {0BE86F61-4132-4902-A4F4-1A1CA5A1B58E}
sihost.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe" /scheduler
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Users\Vendeta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 209504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 6141528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 4445272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-18 8783616]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5595336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-18 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu]
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-01-17 1284680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe /MONITOR []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 08:46:45 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-03-20 08:46:32 ----D---- C:\ProgramData\Malwarebytes
2016-03-20 08:46:32 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-03-20 08:39:23 ----D---- C:\rsit
2016-03-20 08:39:23 ----D---- C:\Program Files\trend micro
2016-03-20 08:38:26 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 08:37:39 ----D---- C:\FRST
2016-03-19 10:07:12 ----D---- C:\WINDOWS\system32\SleepStudy
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\drivers\rt640x64.sys
2016-03-18 12:28:52 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosade.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sltech64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slprp64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slcnt64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2016-03-18 12:28:46 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMUI.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMLimiter.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMHVS.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ_Voice.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMClariFi.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CX64APO.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 12:00:03 ----SHD---- C:\Recovery
2016-03-18 11:58:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-03-18 11:51:18 ----SD---- C:\Users\Vendeta\AppData\Roaming\Microsoft
2016-03-18 11:50:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 11:50:37 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-18 11:49:02 ----D---- C:\WINDOWS\system32\DAX2
2016-03-18 11:48:45 ----D---- C:\Program Files\Realtek
2016-03-18 11:48:44 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-18 11:48:42 ----D---- C:\ProgramData\NVIDIA
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-18 11:48:23 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-18 11:48:17 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-18 11:47:36 ----D---- C:\WINDOWS\Prefetch
2016-03-18 11:46:59 ----ASH---- C:\swapfile.sys
2016-03-18 11:46:02 ----DC---- C:\WINDOWS\Panther
2016-03-18 11:43:39 ----D---- C:\Windows.old
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\msmq
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\BestPractices
2016-03-18 11:37:52 ----D---- C:\Program Files\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files\MSBuild
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\MSBuild
2016-03-18 11:37:52 ----D---- C:\inetpub
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-18 11:37:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:54 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-09 10:18:44 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-03-09 10:18:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2016-03-09 10:18:42 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2016-03-06 15:59:40 ----D---- C:\Program Files\Common Files\AV
2016-03-06 15:01:22 ----A---- C:\WINDOWS\ntbtlog.txt
2016-03-06 14:58:03 ----D---- C:\ProgramData\ESET
2016-03-06 14:58:03 ----D---- C:\Program Files\ESET
2016-03-06 14:40:03 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2016-03-06 14:40:02 ----D---- C:\Program Files\VS Revo Group
2016-03-06 08:52:37 ----D---- C:\Users\Vendeta\AppData\Roaming\PortForward.com
2016-03-06 08:52:37 ----D---- C:\Program Files (x86)\Portforward
2016-02-27 15:57:47 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtvienna.dat
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtkSSTsetting.dat
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\Rovio
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\NVIDIA
2016-02-22 17:17:22 ----D---- C:\Games
2016-02-22 16:31:45 ----D---- C:\ProgramData\Steam
======List of files/folders modified in the last 1 month======
2016-03-20 19:47:05 ----D---- C:\WINDOWS\Temp
2016-03-20 19:45:18 ----D---- C:\WINDOWS\system32\sru
2016-03-20 19:41:54 ----D---- C:\WINDOWS\INF
2016-03-20 18:54:29 ----D---- C:\WINDOWS\system32\config
2016-03-20 18:12:39 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-20 16:44:47 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 12:19:23 ----D---- C:\WINDOWS\System32
2016-03-20 08:48:17 ----D---- C:\WINDOWS\system32\drivers
2016-03-20 08:48:08 ----D---- C:\Users\Vendeta\AppData\Roaming\uTorrent
2016-03-20 08:46:32 ----RD---- C:\Program Files (x86)
2016-03-20 08:46:32 ----HD---- C:\ProgramData
2016-03-20 08:41:48 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-20 08:41:38 ----D---- C:\Program Files\Common Files
2016-03-20 08:41:38 ----D---- C:\Program Files (x86)\Common Files
2016-03-20 08:40:08 ----D---- C:\Windows
2016-03-20 08:39:23 ----RD---- C:\Program Files
2016-03-19 16:31:56 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 10:06:26 ----D---- C:\WINDOWS\Logs
2016-03-19 09:40:14 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-19 09:32:19 ----D---- C:\WINDOWS\appcompat
2016-03-19 09:31:02 ----D---- C:\WINDOWS\system32\WDI
2016-03-18 18:45:05 ----RD---- C:\WINDOWS\assembly
2016-03-18 15:44:51 ----HD---- C:\Program Files\WindowsApps
2016-03-18 15:18:30 ----D---- C:\WINDOWS\WinSxS
2016-03-18 15:18:30 ----D---- C:\WINDOWS\SysWOW64
2016-03-18 15:18:30 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 15:18:14 ----SHD---- C:\WINDOWS\Installer
2016-03-18 12:33:20 ----SHD---- C:\System Volume Information
2016-03-18 12:31:09 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-18 12:27:37 ----D---- C:\WINDOWS\system32\restore
2016-03-18 12:17:13 ----D---- C:\WINDOWS\OCR
2016-03-18 12:15:10 ----SD---- C:\ProgramData\Microsoft
2016-03-18 12:01:19 ----D---- C:\WINDOWS\rescache
2016-03-18 12:00:13 ----D---- C:\WINDOWS\system32\wbem
2016-03-18 12:00:05 ----D---- C:\Program Files\Windows NT
2016-03-18 12:00:03 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-18 11:59:53 ----D---- C:\WINDOWS\debug
2016-03-18 11:59:43 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-18 11:59:23 ----D---- C:\WINDOWS\Registration
2016-03-18 11:58:50 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-18 11:58:45 ----RSD---- C:\WINDOWS\Media
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-18 11:54:46 ----D---- C:\WINDOWS\Tasks
2016-03-18 11:53:36 ----D---- C:\WINDOWS\twain_32
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-18 11:53:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\SPReview
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\NDF
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\migration
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\it-IT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\IME
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\EventProviders
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\es-ES
2016-03-18 11:53:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\el-GR
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\de-DE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\da-DK
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-18 11:52:44 ----D---- C:\WINDOWS\schemas
2016-03-18 11:52:44 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-18 11:52:40 ----D---- C:\WINDOWS\ehome
2016-03-18 11:52:39 ----RD---- C:\Users
2016-03-18 11:52:34 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-03-18 11:52:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-18 11:52:33 ----SHD---- C:\Program Files\Windows Sidebar
2016-03-18 11:52:33 ----D---- C:\Program Files\Windows Mail
2016-03-18 11:52:33 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-18 11:52:30 ----D---- C:\Program Files\Microsoft Games
2016-03-18 11:52:30 ----D---- C:\Program Files\DVD Maker
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-18 11:51:56 ----D---- C:\WINDOWS\system32\Recovery
2016-03-18 11:50:15 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-18 11:48:38 ----D---- C:\WINDOWS\Help
2016-03-18 11:48:07 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 11:43:23 ----RSD---- C:\WINDOWS\Fonts
2016-03-18 11:43:23 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-18 11:43:23 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Boot
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\appraiser
2016-03-18 11:43:23 ----D---- C:\WINDOWS\bcastdvr
2016-03-18 11:43:23 ----D---- C:\WINDOWS\AppPatch
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Media Player
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Journal
2016-03-18 11:43:23 ----D---- C:\Program Files\Internet Explorer
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-03-18 11:37:45 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-03-18 11:37:44 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-03-18 11:37:43 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-03-18 11:37:39 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-03-18 11:37:38 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-03-18 11:37:37 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-03-18 11:37:36 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-03-18 11:19:14 ----HD---- C:\$WINDOWS.~BT
2016-03-16 18:58:24 ----D---- C:\Users\Vendeta\AppData\Roaming\vlc
2016-03-09 20:02:51 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 19:57:49 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-08 19:02:59 ----D---- C:\ProgramData\CanonIJPLM
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 14:53:37 ----D---- C:\Program Files (x86)\IObit
2016-03-06 14:53:32 ----D---- C:\ProgramData\MFAData
2016-03-06 14:51:32 ----D---- C:\ProgramData\IObit
2016-03-06 14:50:53 ----D---- C:\ProgramData\Avg
2016-03-06 14:50:15 ----HD---- C:\$AVG
2016-02-25 08:52:33 ----D---- C:\Program Files (x86)\Steam
2016-02-25 08:44:12 ----D---- C:\Users\Vendeta\AppData\Roaming\DAEMON Tools Pro
2016-02-25 08:27:11 ----D---- C:\ProgramData\ProductData
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2015-12-26 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2015-12-26 43720]
R1 dtsoftbus01;@oem27.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2016-01-10 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-26 26528]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2014-10-10 158968]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdiox64;@oem18.inf,%amdio.SvcDesc%;AMD IO Driver; C:\WINDOWS\System32\drivers\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-18 4739328]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-03-20 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-03-18 175616]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-19 12907704]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-10-13 19600]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-10-13 38032]
R3 rt640x64;@oem36.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-03-18 936192]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RTL8167;@oem24.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2015-12-26 1026304]
S3 RTL8169;Realtek 8169 NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-05-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-10-13 1148560]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-03-18 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-10-13 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-10-13 21833360]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-10-13 933168]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-10-13 416432]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_33764;Hostitel synchronizace_33764; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3607e;Hostitel synchronizace_3607e; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_33764;Služba zasílání zpráv_33764; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_33764;Data kontaktů_33764; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_33764;Úložiště uživatelských dat_33764; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
Run by Vendeta at 2016-03-20 19:48:07
Microsoft Windows 10 Home
System drive C: has 670 GB (89%) free of 753 GB
Total RAM: 8146 MB (82% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:48:11, on 20.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\trend micro\Vendeta.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8013
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8531 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 58f6e5ad-48e5-414e-94e9-6686d1c11c60 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {5bace981-1504-43b7-a60948bb7ff2cd17}
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {0BE86F61-4132-4902-A4F4-1A1CA5A1B58E}
sihost.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\System32\RuntimeBroker.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe" /scheduler
"C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Users\Vendeta\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 209504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23 176736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 6141528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23 4445272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-18 8783616]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2014-10-01 5595336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-18 551104]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Vendeta\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonQuickMenu]
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2014-01-17 1284680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe /MONITOR []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [2012-10-23 3108480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files (x86)\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-03-20 08:46:45 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-03-20 08:46:32 ----D---- C:\ProgramData\Malwarebytes
2016-03-20 08:46:32 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-03-20 08:46:32 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2016-03-20 08:39:23 ----D---- C:\rsit
2016-03-20 08:39:23 ----D---- C:\Program Files\trend micro
2016-03-20 08:38:26 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-20 08:37:39 ----D---- C:\FRST
2016-03-19 10:07:12 ----D---- C:\WINDOWS\system32\SleepStudy
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\RtNicProp64.dll
2016-03-18 12:30:29 ----A---- C:\WINDOWS\system32\drivers\rt640x64.sys
2016-03-18 12:28:52 ----A---- C:\WINDOWS\system32\YamahaAE2.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\YamahaAE.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\WavesGUILib64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaemaxapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tossaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\toseaeapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosasfapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tosade.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tepeqapo64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo264.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\tadefxapo.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2016-03-18 12:28:51 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRRPTR64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRCOM.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SRAPO64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sltech64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slprp64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\slcnt64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\sl3apo64.dll
2016-03-18 12:28:50 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\SYSWOW64\SECOMN32.DLL
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEHDRA64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SECOMN64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\SEAPO64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2016-03-18 12:28:49 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2016-03-18 12:28:47 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2016-03-18 12:28:46 ----A---- C:\WINDOWS\SYSWOW64\RltkAPO.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2016-03-18 12:28:46 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2016-03-18 12:28:45 ----A---- C:\WINDOWS\system32\NAHIMICV3apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICV2apo.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NahimicAPONSControl.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2016-03-18 12:28:44 ----A---- C:\WINDOWS\system32\MISS_APO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2016-03-18 12:28:43 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2016-03-18 12:28:42 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-18 12:28:41 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\KAAPORT64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSstCApoPropPage.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\IntelSSTAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\ICEsoundAPO64.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMUI.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMLimiter.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMHVS.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ_Voice.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMEQ.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMClariFi.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HMAPO.dll
2016-03-18 12:28:40 ----A---- C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\HarmanAudioInterface.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PREC64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PLFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSU2PGFX64.dll
2016-03-18 12:28:38 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-18 12:28:37 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64F3.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\DDPA64.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CX64APO.dll
2016-03-18 12:28:36 ----A---- C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2016-03-18 12:28:35 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 12:17:10 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 12:00:03 ----SHD---- C:\Recovery
2016-03-18 11:58:52 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-03-18 11:51:18 ----SD---- C:\Users\Vendeta\AppData\Roaming\Microsoft
2016-03-18 11:50:44 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 11:50:37 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-18 11:49:02 ----D---- C:\WINDOWS\system32\DAX2
2016-03-18 11:48:45 ----D---- C:\Program Files\Realtek
2016-03-18 11:48:44 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-18 11:48:42 ----D---- C:\ProgramData\NVIDIA
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-18 11:48:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-18 11:48:23 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-18 11:48:17 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-18 11:47:36 ----D---- C:\WINDOWS\Prefetch
2016-03-18 11:46:59 ----ASH---- C:\swapfile.sys
2016-03-18 11:46:02 ----DC---- C:\WINDOWS\Panther
2016-03-18 11:43:39 ----D---- C:\Windows.old
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 11:42:38 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:42:37 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 11:42:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:42:34 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\msmq
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\BestPractices
2016-03-18 11:37:52 ----D---- C:\Program Files\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files\MSBuild
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-18 11:37:52 ----D---- C:\Program Files (x86)\MSBuild
2016-03-18 11:37:52 ----D---- C:\inetpub
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-18 11:37:17 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-18 11:37:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 11:37:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-18 11:37:01 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 10:18:56 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 10:18:54 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-09 10:18:44 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-03-09 10:18:43 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2016-03-09 10:18:42 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2016-03-06 15:59:40 ----D---- C:\Program Files\Common Files\AV
2016-03-06 15:01:22 ----A---- C:\WINDOWS\ntbtlog.txt
2016-03-06 14:58:03 ----D---- C:\ProgramData\ESET
2016-03-06 14:58:03 ----D---- C:\Program Files\ESET
2016-03-06 14:40:03 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2016-03-06 14:40:02 ----D---- C:\Program Files\VS Revo Group
2016-03-06 08:52:37 ----D---- C:\Users\Vendeta\AppData\Roaming\PortForward.com
2016-03-06 08:52:37 ----D---- C:\Program Files (x86)\Portforward
2016-02-27 15:57:47 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtvienna.dat
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2016-02-25 09:05:57 ----A---- C:\WINDOWS\system32\drivers\rtkSSTsetting.dat
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\Rovio
2016-02-22 17:17:45 ----D---- C:\Users\Vendeta\AppData\Roaming\NVIDIA
2016-02-22 17:17:22 ----D---- C:\Games
2016-02-22 16:31:45 ----D---- C:\ProgramData\Steam
======List of files/folders modified in the last 1 month======
2016-03-20 19:47:05 ----D---- C:\WINDOWS\Temp
2016-03-20 19:45:18 ----D---- C:\WINDOWS\system32\sru
2016-03-20 19:41:54 ----D---- C:\WINDOWS\INF
2016-03-20 18:54:29 ----D---- C:\WINDOWS\system32\config
2016-03-20 18:12:39 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-20 16:44:47 ----D---- C:\WINDOWS\system32\Tasks
2016-03-20 12:19:23 ----D---- C:\WINDOWS\System32
2016-03-20 08:48:17 ----D---- C:\WINDOWS\system32\drivers
2016-03-20 08:48:08 ----D---- C:\Users\Vendeta\AppData\Roaming\uTorrent
2016-03-20 08:46:32 ----RD---- C:\Program Files (x86)
2016-03-20 08:46:32 ----HD---- C:\ProgramData
2016-03-20 08:41:48 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-20 08:41:38 ----D---- C:\Program Files\Common Files
2016-03-20 08:41:38 ----D---- C:\Program Files (x86)\Common Files
2016-03-20 08:40:08 ----D---- C:\Windows
2016-03-20 08:39:23 ----RD---- C:\Program Files
2016-03-19 16:31:56 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 10:06:26 ----D---- C:\WINDOWS\Logs
2016-03-19 09:40:14 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-19 09:32:19 ----D---- C:\WINDOWS\appcompat
2016-03-19 09:31:02 ----D---- C:\WINDOWS\system32\WDI
2016-03-18 18:45:05 ----RD---- C:\WINDOWS\assembly
2016-03-18 15:44:51 ----HD---- C:\Program Files\WindowsApps
2016-03-18 15:18:30 ----D---- C:\WINDOWS\WinSxS
2016-03-18 15:18:30 ----D---- C:\WINDOWS\SysWOW64
2016-03-18 15:18:30 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 15:18:14 ----SHD---- C:\WINDOWS\Installer
2016-03-18 12:33:20 ----SHD---- C:\System Volume Information
2016-03-18 12:31:09 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-18 12:27:37 ----D---- C:\WINDOWS\system32\restore
2016-03-18 12:17:13 ----D---- C:\WINDOWS\OCR
2016-03-18 12:15:10 ----SD---- C:\ProgramData\Microsoft
2016-03-18 12:01:19 ----D---- C:\WINDOWS\rescache
2016-03-18 12:00:13 ----D---- C:\WINDOWS\system32\wbem
2016-03-18 12:00:05 ----D---- C:\Program Files\Windows NT
2016-03-18 12:00:03 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-18 11:59:53 ----D---- C:\WINDOWS\debug
2016-03-18 11:59:43 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-18 11:59:23 ----D---- C:\WINDOWS\Registration
2016-03-18 11:58:50 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-18 11:58:45 ----RSD---- C:\WINDOWS\Media
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\en-US
2016-03-18 11:54:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-18 11:54:46 ----D---- C:\WINDOWS\Tasks
2016-03-18 11:53:36 ----D---- C:\WINDOWS\twain_32
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-18 11:53:36 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-18 11:53:35 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-18 11:53:34 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-18 11:53:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-18 11:53:31 ----D---- C:\WINDOWS\system32\SPReview
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\NDF
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\migration
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\it-IT
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\IME
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\EventProviders
2016-03-18 11:53:29 ----D---- C:\WINDOWS\system32\es-ES
2016-03-18 11:53:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\el-GR
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\de-DE
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\da-DK
2016-03-18 11:53:28 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-18 11:52:44 ----D---- C:\WINDOWS\schemas
2016-03-18 11:52:44 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-18 11:52:40 ----D---- C:\WINDOWS\ehome
2016-03-18 11:52:39 ----RD---- C:\Users
2016-03-18 11:52:34 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-03-18 11:52:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-18 11:52:33 ----SHD---- C:\Program Files\Windows Sidebar
2016-03-18 11:52:33 ----D---- C:\Program Files\Windows Mail
2016-03-18 11:52:33 ----AD---- C:\Program Files (x86)\ATI Technologies
2016-03-18 11:52:30 ----D---- C:\Program Files\Microsoft Games
2016-03-18 11:52:30 ----D---- C:\Program Files\DVD Maker
2016-03-18 11:52:30 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-18 11:51:56 ----D---- C:\WINDOWS\system32\Recovery
2016-03-18 11:50:15 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-18 11:48:38 ----D---- C:\WINDOWS\Help
2016-03-18 11:48:07 ----D---- C:\WINDOWS\system32\catroot2
2016-03-18 11:43:23 ----RSD---- C:\WINDOWS\Fonts
2016-03-18 11:43:23 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-18 11:43:23 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Dism
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\Boot
2016-03-18 11:43:23 ----D---- C:\WINDOWS\system32\appraiser
2016-03-18 11:43:23 ----D---- C:\WINDOWS\bcastdvr
2016-03-18 11:43:23 ----D---- C:\WINDOWS\AppPatch
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Media Player
2016-03-18 11:43:23 ----D---- C:\Program Files\Windows Journal
2016-03-18 11:43:23 ----D---- C:\Program Files\Internet Explorer
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-18 11:43:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\MUI
2016-03-18 11:37:53 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-18 11:37:48 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-18 11:37:46 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-03-18 11:37:45 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-03-18 11:37:44 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-03-18 11:37:43 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-03-18 11:37:42 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-03-18 11:37:39 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-03-18 11:37:38 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-03-18 11:37:37 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-03-18 11:37:36 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-03-18 11:37:35 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-03-18 11:19:14 ----HD---- C:\$WINDOWS.~BT
2016-03-16 18:58:24 ----D---- C:\Users\Vendeta\AppData\Roaming\vlc
2016-03-09 20:02:51 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 19:57:49 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-08 19:02:59 ----D---- C:\ProgramData\CanonIJPLM
2016-03-08 08:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 14:53:37 ----D---- C:\Program Files (x86)\IObit
2016-03-06 14:53:32 ----D---- C:\ProgramData\MFAData
2016-03-06 14:51:32 ----D---- C:\ProgramData\IObit
2016-03-06 14:50:53 ----D---- C:\ProgramData\Avg
2016-03-06 14:50:15 ----HD---- C:\$AVG
2016-02-25 08:52:33 ----D---- C:\Program Files (x86)\Steam
2016-02-25 08:44:12 ----D---- C:\Users\Vendeta\AppData\Roaming\DAEMON Tools Pro
2016-02-25 08:27:11 ----D---- C:\ProgramData\ProductData
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2015-12-26 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2015-12-26 43720]
R1 dtsoftbus01;@oem27.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2016-01-10 283200]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-26 26528]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2014-10-10 158968]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdiox64;@oem18.inf,%amdio.SvcDesc%;AMD IO Driver; C:\WINDOWS\System32\drivers\amdiox64.sys [2010-02-18 46136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-18 4739328]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-03-20 192216]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-03-18 175616]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-19 12907704]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-10-13 19600]
R3 nvvad_WaveExtensible;@oem3.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-10-13 38032]
R3 rt640x64;@oem36.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-03-18 936192]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-02-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 RTL8167;@oem24.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2015-12-26 1026304]
S3 RTL8169;Realtek 8169 NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-05-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-10-13 1148560]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-03-18 26624]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-10-13 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2015-10-13 21833360]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-10-13 933168]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-10-13 416432]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_33764;Hostitel synchronizace_33764; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3607e;Hostitel synchronizace_3607e; C:\Windows\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-26 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_33764;Služba zasílání zpráv_33764; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_33764;Data kontaktů_33764; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_33764;Úložiště uživatelských dat_33764; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu prosím
Log je již OK. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
zelvalenka
- Návštěvník

- Příspěvky: 54
- Registrován: 24 říj 2015 16:54
Re: Kontrola logu prosím
Děkuji za váš čas 
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Kontrola logu prosím
Rádo se stalo! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Přispějete na provoz fóra?